cve/2024/CVE-2024-6420.md
2024-07-25 21:25:12 +00:00

763 B

CVE-2024-6420

Description

The Hide My WP Ghost WordPress plugin before 5.2.02 does not prevent redirects to the login page via the auth_redirect WordPress function, allowing an unauthenticated visitor to access the hidden login page.

POC

Reference

Github

No PoCs found on GitHub currently.