CVE-2019-15774
40Vexday Risk Score
Patch now. It exploitation observed by VulnCheck and has a working public exploit.
ssvc Actepss 1.7%
from disclosure to weapon
Published on NVDAug 29
VulnCheckAug 5
exploitation probability
1.7%top 24% of all CVEs
observed exploitation
yesVulnCheck
The nd-booking plugin before 2.5 for WordPress has a nopriv_ AJAX action that allows modification of the siteurl setting.
Affected products
n/a · n/a