WordPress · Vikrentcar Car Rental Management System · CVE-2024-1845
**Name of the Vulnerable Software and Affected Versions**
VikRentCar Car Rental Management System WordPress plugin versions prior to 1.3.2
**Description**
The issue is related to the lack of CSRF checks in some places, which could allow attackers to make logged-in users perform unwanted actions via CSRF attacks.
**Recommendations**
For versions prior to 1.3.2, update to version 1.3.2 or later to resolve the issue. As a temporary workaround, consider implementing additional CSRF protection measures to minimize the risk of exploitation.