The WP Inventory Manager WordPress plugin before 2.1.0.14 does not have CSRF checks, which could allow attackers to make logged-in admins delete Inventory Items via a CSRF attack
Name | Vendor | Start Version | End Version |
---|---|---|---|
Wp_inventory_manager | Wpinventory | * | 2.1.0.14 (excluding) |