cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2024-12309,https://securityvulnerability.io/vulnerability/CVE-2024-12309,Unpublished Posts Vulnerable to Unauthenticated Voting Due to IDOR in Rate My Post Plugin,"The Rate My Post – Star Rating Plugin by FeedbackWP plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 4.2.4 via the get_post_status() due to missing validation on a user controlled key. This makes it possible for unauthenticated attackers to vote on unpublished scheduled posts.",Wordpress,Rate My Post – Star Rating Plugin By FeedbackWP,5.3,MEDIUM,0.0004600000102072954,false,,false,false,false,,false,false,2024-12-13T08:24:51.699Z,0