← Back

Wp Edit Menu Project

wp_edit_menu_project

2 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Wp Edit Menu
wp_edit_menu

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Wp Edit Menu Project
1Wp Edit Menu
Jun 17, 2026
Aug 22, 2022
N/A· v4
4.3 MEDIUM· v3
N/A· v2
The WP Edit Menu WordPress plugin before 1.5.0 does not have authorisation and CSRF in an AJAX action, which could allow unauthenticated attackers to delete arbitrary posts/pages from the blog
1Wp Edit Menu Project
1Wp Edit Menu
Jun 17, 2026
Aug 22, 2022
N/A· v4
4.3 MEDIUM· v3
N/A· v2
The WP Edit Menu WordPress plugin before 1.5.0 does not have CSRF in an AJAX action, which could allow attackers to make a logged in admin delete arbitrary posts/pages from the blog via a CSRF attack