WordPress Plugin Vulnerabilities

Adapta RGPD < 1.3.3 - Unauthorised Consent via CSRF

Description

The accept_cookie_consent AJAX action did not properly check for CSRF, allowing attackers to make users consent via a CSRF attack.

Proof of Concept

Affects Plugins

Fixed in 1.3.3

Classification

Miscellaneous

Original Researcher
WPSanTeam
Verified
Yes

Timeline

Publicly Published
2021-06-30 (about 4 years ago)
Added
2021-06-30 (about 4 years ago)
Last Updated
2021-06-30 (about 4 years ago)

Other