"value":"The Bulk Delete Users by Email WordPress plugin through 1.2 does not have CSRF check when deleting users, which could allow attackers to make a logged in admin delete non admin users by knowing their email via a CSRF attack"
"value":"El complemento Bulk Delete Users by Email de WordPress hasta la versi\u00f3n 1.2 no tiene verificaci\u00f3n CSRF al eliminar usuarios, lo que podr\u00eda permitir a los atacantes hacer que un administrador que haya iniciado sesi\u00f3n elimine a los usuarios que no son administradores conociendo su correo electr\u00f3nico a trav\u00e9s de un ataque CSRF."