High
CVSS 8.8
Overview
The site-offline plugin before 1.4.4 for WordPress lacks certain wp_create_nonce and wp_verify_nonce calls, aka CSRF.
The site-offline plugin before 1.4.4 for WordPress lacks certain wp_create_nonce...
The site-offline plugin before 1.4.4 for WordPress lacks certain wp_create_nonce and wp_verify_nonce calls, aka CSRF.
This vulnerability is rated 🟠 HIGH.
Recommended actions: