CyberRota Analysis
AI analysis pending.
CVE
CVE-2023-0820
Severity
HIGH
CVSS
8.8
EPSS
0.41%
WordPress
Original NVD Description
The User Role by BestWebSoft WordPress plugin before 1.6.7 does not protect against CSRF in requests to update role capabilities, leading to arbitrary privilege escalation of any role.
Related CVEs
Other vulnerabilities affecting the same vendor(s)