PoC Index

CVE-2024-0780

HIGH 8.8EPSS 0.8%

The Enjoy Social Feed plugin for WordPress website WordPress plugin through 6.2.2 does not have authorisation when resetting its database, allowing any authenticated users, such as subscriber to perform such action

CVSS v3.1
8.8 HIGHCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS v3.1
8.8 HIGHCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS
0.77% chance of exploitation in the next 30 days, 53th percentile
Published
2024-03-18
Updated
2025-03-14

Proof-of-concept exploits (1)

References

Related