WordPress Plugin Vulnerabilities

WP Mail Logging < 1.10.0 - Outdated Redux Framework

Description

The plugin uses an outdated version of the Redux Framework, which is know to be affected by security issues (CVE-2021-38312 and CVE-2021-38314), and could allow unauthenticated attackers to change some of the Framework settings by using CVE-2021-38314

Proof of Concept

Affects Plugins

Fixed in 1.10.0

References

Classification

Type
ACCESS CONTROLS
CWE

Miscellaneous

Original Researcher
Rotem Reiss
Submitter
Rotem Reiss
Submitter twitter
Verified
Yes

Timeline

Publicly Published
2021-11-29 (about 4 years ago)
Added
2021-11-29 (about 4 years ago)
Last Updated
2022-04-10 (about 3 years ago)

Other