Total vulnerabilities in the database
WordPress before 4.5.3 allows remote attackers to bypass intended password-change restrictions by leveraging knowledge of a cookie.
CVSS v3:
CVSS v2:
CWEs: