PT-2024-11627 · Themehunk · Themehunk Advance Wordpress Search Plugin

Rasi

+1

·

Published

2024-05-08

·

Updated

2026-01-09

·

CVE-2022-40218

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions ThemeHunk Advance WordPress Search Plugin versions 1.1.4 and earlier
Description The issue is related to a missing authorization vulnerability in the ThemeHunk Advance WordPress Search Plugin. This could allow unauthorized access due to missing authorization checks.
Recommendations Update to a patched version as soon as possible and review plugin security settings. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2022-40218

Affected Products

Themehunk Advance Wordpress Search Plugin