Cross-Site Request Forgery (CSRF) vulnerability in Cozmoslabs Profile Builder plugin <= 3.6.0 at WordPress allows uploading the JSON file and updating the options. Requires Import and Export add-on.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Patchstack

Published: 2022-10-11T19:33:59.929069Z

Updated: 2024-09-17T00:30:46.707Z

Reserved: 2021-07-19T00:00:00

Link: CVE-2021-36915

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-10-11T20:15:10.787

Modified: 2024-11-21T06:14:17.830

Link: CVE-2021-36915

cve-icon Redhat

No data.