← Back to CVE List

CVE-2021-24831

Published: 2022-01-03T13:15Z
Last Modified: 2024-11-21T05:53Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
All AJAX actions of the Tab WordPress plugin before 1.3.2 are available to both unauthenticated and authenticated users, allowing unauthenticated attackers to modify various data in the plugin, such as add/edit/delete arbitrary tabs. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt