First published: Fri Aug 16 2019(Updated: )
The peters-login-redirect plugin before 2.9.2 for WordPress has CSRF.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ProfilePress | <2.9.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-15115 is a vulnerability in the peters-login-redirect plugin for WordPress that allows CSRF attacks.
CVE-2019-15115 has a severity rating of 8.8, which is considered high.
The peters-login-redirect plugin version up to 2.9.2 for WordPress is affected by CVE-2019-15115.
To fix CVE-2019-15115, update the peters-login-redirect plugin to version 2.9.2 or higher.
More information about CVE-2019-15115 can be found at https://wordpress.org/plugins/peters-login-redirect/#developers.