Description
WordPress Hide My WP plugin (versions <= 6.2.3) can be deactivated by any unauthenticated user. It is possible to retrieve a reset token which can then be used to deactivate the plugin.
No analysis available yet.
Remediation
Vendor Solution
Update to 6.2.4 or higher version.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-23493 | WordPress Hide My WP plugin (versions <= 6.2.3) can be deactivated by any unauthenticated user. It is possible to retrieve a reset token which can then be used to deactivate the plugin. |
References
History
Fri, 28 Mar 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-03-28T16:47:04.153Z
Reserved: 2021-07-19T00:00:00.000Z
Link: CVE-2021-36917
Updated: 2024-08-04T01:01:59.663Z
Status : Modified
Published: 2021-11-24T17:15:07.917
Modified: 2024-11-21T06:14:18.087
Link: CVE-2021-36917
No data.
OpenCVE Enrichment
No data.
EUVD