CVE-2024-9187
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Published Oct 12, 2024
Updated: Oct 15, 2024
CWE ID 862
Summary
CVE-2024-9187 is a vulnerability affecting the Read more By Adam plugin for WordPress. This issue allows authenticated attackers with Subscriber-level access or higher to delete read more buttons unauthorizedly. The vulnerability stems from a missing capability check on the plugin's deleteRm() function, which can lead to the loss of data for affected websites using versions 1.1.8 and below. This vulnerability poses a risk for data integrity and may require plugin updates or manual remediation to mitigate its impact.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.