The Purchase Button For Affiliate Link plugin for WordPress is affected by a Cross-Site Request Forgery (CSRF) vulnerability in all versions up to and including 1.0.2. The lack of nonce validation on its settings page allows unauthenticated attackers to potentially alter plugin settings with manipulated requests.
We use cookies to enhance your browsing experience, serve personalized ads or content, and analyze our traffic. By clicking "Accept All", you consent to our use of cookies.