The ArtPlacer Widget WordPress plugin before 2.21.2 does not have authorisation check in place when deleting widgets, allowing ay authenticated users, such as subscriber, to delete arbitrary widgets
History

Fri, 16 May 2025 13:30:00 +0000

Type Values Removed Values Added
First Time appeared Artplacer
Artplacer artplacer Widget
Weaknesses CWE-862
CPEs cpe:2.3:a:artplacer:artplacer_widget:*:*:*:*:*:wordpress:*:*
Vendors & Products Artplacer
Artplacer artplacer Widget

cve-icon MITRE

Status: PUBLISHED

Assigner: WPScan

Published: 2024-07-19T06:00:04.159Z

Updated: 2024-08-02T08:57:35.460Z

Reserved: 2024-06-10T17:54:52.251Z

Link: CVE-2023-7268

cve-icon Vulnrichment

Updated: 2024-08-02T08:57:35.460Z

cve-icon NVD

Status : Analyzed

Published: 2024-07-19T06:15:02.140

Modified: 2025-05-16T13:15:11.647

Link: CVE-2023-7268

cve-icon Redhat

No data.