WordPress WP Opt-in plugin” (versions <= 1.4.1 ) arbitrary configuration update due to Cross Site Request Forgery (CSRF) vulnerability

Details

Arbitrary configuration update due to Cross Site Request Forgery (CSRF) vulnerability discovered in the WordPress WP opt-in plugin (version <= 1.4.1).

solution

Deactivate and remove. This plugin is closed as of June 15, 2022 and cannot be downloaded.

Sources.

WP Opt-in

脆弱性情報を受け取る