Live Vulnerability Intelligence
Threat Database
Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.
Threat Entry
Updated 2024-11-21
CVE-2021-24805 - Answer Pro Plugin
The DW Question & Answer Pro WordPress plugin through 1.3.4 does not properly check for CSRF in some of its functions, allowing attackers to make logged in users perform unwanted actions, such as update a comment or a question status.
PLUGIN
Answer Pro
CVE-2021-24805
Risk Score
Threat Entry
Updated 2024-11-21
CVE-2021-24800 - Answer Pro Plugin
The DW Question & Answer Pro WordPress plugin through 1.3.4 does not check that the comment to edit belongs to the user making the request, allowing any user to edit other comments.
PLUGIN
Answer Pro
CVE-2021-24800
Risk Score
