关键信息 漏洞概述 漏洞名称: WordPress Popup for CF7 with Sweet Alert Plugin <= 1.6.5 is vulnerable to Cross Site Request Forgery (CSRF) 优先级: Low priority 受影响版本: <= 1.6.5 官方修复: No official fix available 风险 CVSS评分: 4.3 风险描述: Cross Site Request Forgery (CSRF) - This could allow a malicious actor to force higher privileged users to execute unwanted actions under their current authentication. 警告: This software is likely abandoned! It was last updated over a year ago and will likely not receive further updates or fixes. 解决方案 建议: Remove and replace software. This security issue has a low severity impact and is unlikely to be exploited. 时间线 报告日期: 2020-08-25 发布日期: 2020-08-25 其他信息 软件类型: Plugin 漏洞版本: <= 1.6.5 修复补丁: N/A