CVE-2022-3632

CVE-2022-3632: OAuth Client by DigitialPixies <= 1.1.0 - CSRF

Vendor Unknown
Product OAuth Client by DigitialPixies
Weakness CWE-352 · CSRF
Published November 14, 2022
Last update April 30, 2025

CVSS base score

What the vulnerability does

01Description

The OAuth Client by DigitialPixies WordPress plugin through 1.1.0 does not have CSRF checks in some places, which could allow attackers to make logged-in users perform unwanted actions.

Key dates

02Disclosure timeline

November 14, 2022 CVE published
April 30, 2025 Record updated