PT-2022-13022 · WordPress · Cmp

Krzysztof Zając

·

Published

2022-02-14

·

Updated

2026-01-19

·

CVE-2022-0188

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions CMP WordPress plugin versions prior to 4.0.19
Description The issue allows any user, even those not logged in, to arbitrarily change the coming soon page layout.
Recommendations For versions prior to 4.0.19, update to version 4.0.19 or later to resolve the issue.

Exploit

Fix

Missing Authentication

Weakness Enumeration

Related Identifiers

CVE-2022-0188

Affected Products

Cmp