← Back to CVE List
CVE-2022-41996
Cross-Site Request Forgery (CSRF) vulnerability in ThemeFusion Avada premium theme versions <= 7.8.1 on WordPress leading to arbitrary plugin installation/activation.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt