piotrmaciejbednarski/CVE-2025-51529

piotrmaciejbednarski/CVE-2025-51529

Releases0
Stars1
Incorrect Access Control in the AJAX endpoint functionality in jonkastonka Cookies and Content Security Policy plugin through version 2.29

CVE History

CVEPublishedCVSS v3CVSS v2
5.3 MEDIUM

Incorrect Access Control in the AJAX endpoint functionality in jonkastonka Cookies and Content Security Policy plugin through version 2.29 allows remote attackers to cause a denial of service (database server resource exhaustion) via unlimited database write operations to the wp_ajax_nopriv_cacsp_insert_consent_data endpoint.