CVE-2019-9881

Published
View on NVD ↗
CVSS v3
N/A
CVSS v2
5
MEDIUM
Affected
2
PROJECTS

Description

The createComment mutation in the WPGraphQL 0.2.3 plugin for WordPress allows unauthenticated users to post comments on any article, even when 'allow comment' is disabled.

:rocket: GraphQL API for WordPress
GitHubGitHub
3.78K
Random Code Snippets
GitHubGitHub
29