CVE-2022-41781: WordPress Permalink Manager Lite plugin <= 2.2.20 - Broken Access Control vulnerability
Broken Access Control vulnerability in Permalink Manager Lite plugin <= 2.2.20 on WordPress.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
wordpress/permalink-manager-liteto a version that resolves this vulnerability.Fixed in 2.2.20.1
Event History
Frequently Asked Questions
What is the vulnerability ID for the Broken Access Control vulnerability in Permalink Manager Lite plugin on WordPress?
The vulnerability ID is CVE-2022-41781.
What is the severity level of CVE-2022-41781?
The severity level of CVE-2022-41781 is critical with a score of 9.8.
What is the affected software of CVE-2022-41781?
The affected software of CVE-2022-41781 is Permalink Manager Lite plugin version 2.2.20 and earlier on WordPress.
How can I fix the Broken Access Control vulnerability in Permalink Manager Lite plugin?
To fix the vulnerability, you should update Permalink Manager Lite plugin to version 2.2.20.1 or later.
Where can I find more information about the vulnerability?
You can find more information about the vulnerability at this reference: [https://patchstack.com/database/vulnerability/permalink-manager/wordpress-permalink-manager-lite-plugin-2-2-20-broken-access-control-vulnerability?_s_id=cve](https://patchstack.com/database/vulnerability/permalink-manager/wordpress-permalink-manager-lite-plugin-2-2-20-broken-access-control-vulnerability?_s_id=cve)