ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

1 result for “CVE-2020-36505”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2020-36505
Published
2021-11-01
CVSS:
6.5
ShadowTrackr CVSS:
5.0
Summary:
The Delete All Comments Easily WordPress plugin through 1.3 is lacking Cross-Site Request Forgery (CSRF) checks, which could result in an unauthenticated attacker making a logged in admin delete all comments from the blog.