CVE-2021-4342

Summary

CVECVE-2021-4342
StateREJECT
Assigner[email protected]
Source PriorityCVE Program / NVD first with legacy fallback
Published2023-06-07 02:15:00 UTC
Updated2023-11-07 03:40:00 UTC
Description** REJECT ** CVE split into individual CVE IDs for each software record.

NVD Known Affected Configurations (CPE 2.3)

TypeVendorProductVersionUpdateEditionLanguage
Application 10up Elasticpress All All All All
Application 10web 10webanalytics All All All All
Application Amministrazione Trasparente Project Amministrazione Trasparente All All All All
Application Analogwp Style Kits All All All All
Application Ashstonestudios Absolute Reviews All All All All
Application Ashstonestudios Advanced Popups All All All All
Application Brainstormforce Import / Export Customizer Settings All All All All
Application Brainstormforce Lightweight Sidebar Manager All All All All
Application C7style Contact Form 7 Style All All All All
Application Cartflows Funnel Builder All All All All
Application Cm-wp Woody Code Snippets All All All All
Application Coolplugins Cool Timeline All All All All
Application Coolplugins Process Steps Template Designer All All All All
Application Designwall Dw Question Answer All All All All
Application Edwiser Bridge All All All All
Application Eventespresso Event Espresso All All All All
Application Ewww Image Optimizer All All All All
Application Exportfeed Woocommerce Etsy Integration All All All All
Application Flippercode Custom Css-js-php All All All All
Application Flippercode Photo Gallery - Image Gallery All All All All
Application Flippercode Wp Security Question All All All All
Application Goldplugins Custom Banners All All All All
Application Goldplugins Easy Testimonials All All All All
Application Goldplugins Locations All All All All
Application Goldplugins Staff Directory Plugin All All All All
Application Goprayer Wp Prayer All All All All
Application Graphpaperpress Sell Media All All All All
Application Implecode Ecommerce Product Catalog All All All All
Application Implecode Product Catalog Simple All All All All
Application Incsub Forminator All All All All
Application Inoplugs Wp-backgrounds Lite All All All All
Application Jesseeproductions Coupon Creator All All All All
Application Menu Swapper Project Menu Swapper All All All All
Application Multiple Roles Project Multiple Roles All All All All
Application Multivendorx Multivendorx All All All All
Application Oceanwp Ocean Extra All All All All
Application Paidmembershipspro Paid Memberships Pro All All All All
Application Presscustomizr Customizr All All All All
Application Presscustomizr Hueman All All All All
Application Qtranslate Slug Project Qtranslate Slug All All All All
Application Quantumcloud Slider Hero All All All All
Application Radio Buttons For Taxonomies Project Radio Buttons For Taxonomies All All All All
Application Rays Grid Project Rays Grid All All All All
Application Rucy Project Rucy All All All All
Application Slickremix Feed Them Social All All All All
Application Sunshinephotocart Sunshine Photo Cart All All All All
Application Themeisle Rss Aggregator By Feedzy All All All All
Application Thimpress Wp Hotel Booking All All All All
Application Tychesoftwares Abandoned Cart Lite For Woocommerce All All All All
Application Villatheme Abandoned Cart Recovery For Woocommerce All All All All
Application Vuukle Vuukle Comments Reactions Share Bar Revenue All All All All
Application Webberzone Better Search All All All All
Application Webberzone Top 10 All All All All
Application Websitescanner Remove Schema All All All All
Application Wedevs Dokan All All All All
Application Wedevs Wp Erp All All All All
Application Wedevs Wp Project Manager All All All All
Application Wmpudev Defender Security All All All All
Application Wp-mpdf Project Wp-mpdf All All All All
Application Wpconcern Coming Soon Maintenance Mode Page All All All All
Application Wpdeveloper Notificationx All All All All
Application Wpeasypay Wp Easypay All All All All
Application Wpexpertdeveloper Wp Private Content Plus All All All All
Application Wpexperts Post Smtp Mailer All All All All
Application Wpgogo Custom Field Template All All All All
Application Wpopal Opal Estate All All All All
Application Wpswings Ultimate Gift Cards For Woocommerce All All All All

References

ReferenceSourceLinkTags
Various Affected Software (Various Versions) - Cross-Site Request Forgery Bypass MISC www.wordfence.com
25 WordPress plugins vulnerable to CSRF attacks. – NinTechNet MISC blog.nintechnet.com
More WordPress plugins and themes vulnerable to CSRF attacks. – NinTechNet MISC blog.nintechnet.com
Multiple WordPress plugins fixed CSRF vulnerabilities (part 3). – NinTechNet MISC blog.nintechnet.com
Multiple WordPress plugins fixed CSRF vulnerabilities (part 2). – NinTechNet MISC blog.nintechnet.com
Multiple WordPress plugins fixed CSRF vulnerabilities (part 4). – NinTechNet MISC blog.nintechnet.com
Multiple WordPress plugins fixed CSRF vulnerabilities (part 5). – NinTechNet MISC blog.nintechnet.com
Multiple WordPress plugins fixed CSRF vulnerabilities (part 1). – NinTechNet MISC blog.nintechnet.com
CVE Program record CVE.ORG www.cve.org canonical
NVD vulnerability detail NVD nvd.nist.gov canonical, analysis
© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

CVE.report and Source URL Uptime Status status.cve.report