Vulnerabilities (CVE)

Filtered by vendor Brainvire Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-2350 1 Brainvire 1 Disable User Login 2024-11-21 N/A 5.3 MEDIUM
The Disable User Login WordPress plugin through 1.0.1 does not have authorisation and CSRF checks when updating its settings, allowing unauthenticated attackers to block (or unblock) users at will.