{ "id": "CVE-2024-1849", "sourceIdentifier": "contact@wpscan.com", "published": "2024-04-15T05:15:15.170", "lastModified": "2024-04-15T13:15:31.997", "vulnStatus": "Awaiting Analysis", "descriptions": [ { "lang": "en", "value": "The WP Customer Reviews WordPress plugin before 3.7.1 does not validate a parameter allowing contributor and above users to redirect a page to a malicious URL" }, { "lang": "es", "value": "El complemento WP Customer Reviews de WordPress anterior a 3.7.1 no valida un par\u00e1metro que permite a los contribuyentes y usuarios superiores redirigir una p\u00e1gina a una URL maliciosa" } ], "metrics": {}, "references": [ { "url": "https://wpscan.com/vulnerability/e6d9fe28-def6-4f25-9967-a77f91899bfe/", "source": "contact@wpscan.com" } ] }