The illi Link Party! WordPress plugin through 1.0 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack.
| Software | From | Fixed in |
|---|---|---|
| evanliewer / illi_link_party! | - | 1.0.x |