CyberRota Analysis
AI analysis pending.
CVE
CVE-2023-4059
Severity
MEDIUM
CVSS
4.3
EPSS
0.20%
WordPress
Original NVD Description
The Profile Builder WordPress plugin before 3.9.8 lacks authorisation and CSRF in its page creation function which allows unauthenticated users to create the register, log-in and edit-profile pages from the plugin on the blog