CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.5. It affects WordPress.
CVE
CVE-2021-24766
Severity
MEDIUM
CVSS
6.5
EPSS
0.53%
WordPress
Original NVD Description
The 404 to 301 – Redirect, Log and Notify 404 Errors WordPress plugin before 3.0.9 does not have CSRF check in place when cleaning the logs, which could allow attacker to make a logged in admin delete all of them via a CSRF attack