cve/2023/CVE-2023-5454.md
2024-05-28 08:49:17 +00:00

717 B

CVE-2023-5454

Description

The Templately WordPress plugin before 2.2.6 does not properly authorize the saved-templates/delete REST API call, allowing unauthenticated users to delete arbitrary posts.

POC

Reference

Github

No PoCs found on GitHub currently.