CVE-2024-5570

The Simple Photoswipe WordPress plugin through 0.1 does not have authorisation check when updating its settings, which could allow any authenticated users, such as subscriber to update them
Configurations

Configuration 1 (hide)

cpe:2.3:a:zitscher:simple_photoswipe:*:*:*:*:*:wordpress:*:*

History

No history.

Information

Published : 2024-06-28 06:15

Updated : 2025-05-19 20:46


NVD link : CVE-2024-5570

Mitre link : CVE-2024-5570

CVE.ORG link : CVE-2024-5570


JSON object : View

Products Affected

zitscher

  • simple_photoswipe
CWE
CWE-862

Missing Authorization