关键信息 漏洞名称: WordPress Double the Donation Plugin <= 2.0.0 is vulnerable to Cross Site Request Forgery (CSRF) 风险等级: Low priority 受影响版本: <= 2.0.0 官方修复: No official fix available 风险类型: Cross Site Request Forgery (CSRF) - 描述: This could allow a malicious actor to force higher privileged users to execute unwanted actions under their current authentication. 软件状态: This software is likely abandoned! - 说明: This software was last updated over a year ago and will likely not receive further updates or fixes. 解决方案: - Remove and replace software. - Note that deactivating the software does not remove the security threat unless vPatch is deployed. 时间线: - Reported by: Notil Inovan on 13 Jul 2020 - Early warning sent out to Patchstack customers: 22 Sep 2020