CyberRota Analysis
AI analysis pending.
CVE
CVE-2022-1709
Severity
MEDIUM
CVSS
4.3
EPSS
0.42%
WordPress
Original NVD Description
The Throws SPAM Away WordPress plugin before 3.3.1 does not have CSRF checks in place when deleting comments (either all, spam, or pending), allowing attackers to make a logged in admin delete comments via a CSRF attack