Total vulnerabilities in the database
An issue was discovered in Pluck 4.7.9-dev1. There is a CSRF vulnerability that can delete a theme (aka topic) via a /admin.php?action=theme_delete&var1= URI.
Software | From | Fixed in |
---|---|---|
pluck-cms / pluck | 4.7.9-dev1 | 4.7.9-dev1.x |