Unauthorized Post Deletion Vulnerability Affects Social Auto Poster Plugin
CVE-2024-6755
5.3MEDIUM
What is CVE-2024-6755?
The Social Auto Poster plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a missing capability check on the āwpw_auto_poster_quick_delete_multipleā function in all versions up to, and including, 5.3.14. This makes it possible for unauthenticated attackers to delete arbitrary posts.
Affected Version(s)
Social Auto Poster * <= 5.3.14