Cross-Site Request Forgery Vulnerability in WP Spell Check by WordPress
CVE-2019-6027
8.8HIGH
What is CVE-2019-6027?
A cross-site request forgery (CSRF) vulnerability exists in the WP Spell Check plugin. This flaw can be exploited by remote attackers to hijack the authentication of administrators. By leveraging unspecified vectors, an unauthorized user can potentially perform actions on behalf of an admin, compromising the site's security. It is crucial for users of WP Spell Check to ensure they update to the latest version to protect against such security risks.
Affected Version(s)
WP Spell Check 7.1.9 and earlier