The Bulk Me Now! WordPress plugin through 2.0 does not have CSRF checks in some places, which could allow attackers to make logged in users perform unwanted actions via CSRF attacks.
                
            References
                    | Link | Resource | 
|---|---|
| https://wpscan.com/vulnerability/d93056f1-1a6e-405f-a094-d4d270393f87/ | Exploit Third Party Advisory | 
| https://wpscan.com/vulnerability/d93056f1-1a6e-405f-a094-d4d270393f87/ | Exploit Third Party Advisory | 
Configurations
                    History
                    11 May 2025, 23:49
| Type | Values Removed | Values Added | 
|---|---|---|
| CWE | CWE-352 | |
| Summary | 
        
        
  | 
|
| First Time | 
        
        Ombu
         Ombu bulk Me Now\!  | 
|
| References | () https://wpscan.com/vulnerability/d93056f1-1a6e-405f-a094-d4d270393f87/ - Exploit, Third Party Advisory | |
| CPE | cpe:2.3:a:ombu:bulk_me_now\!:*:*:*:*:*:wordpress:*:* | 
30 Jan 2025, 16:15
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://wpscan.com/vulnerability/d93056f1-1a6e-405f-a094-d4d270393f87/ - | |
| CVSS | 
        v2 :  v3 :  | 
    
        v2 : unknown
         v3 : 4.3  | 
30 Jan 2025, 06:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2025-01-30 06:15
Updated : 2025-05-11 23:49
NVD link : CVE-2024-12709
Mitre link : CVE-2024-12709
CVE.ORG link : CVE-2024-12709
JSON object : View
Products Affected
                ombu
- bulk_me_now\!
 
CWE
                
                    
                        
                        CWE-352
                        
            Cross-Site Request Forgery (CSRF)
