Vulnerabilities (CVE)

Filtered by vendor Tipsandtricks-hq Subscribe
Filtered by product Far Future Expiry Header
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-24799 1 Tipsandtricks-hq 1 Far Future Expiry Header 2023-12-10 4.3 MEDIUM 4.3 MEDIUM
The Far Future Expiry Header WordPress plugin before 1.5 does not have CSRF check when saving its settings, which could allow attackers to make a logged in admin change them via a CSRF attack.