← WordPress Vulnerabilities
WordPress security by component

Comments Like Dislike

Comments Like Dislike is a WordPress component with 3 published CVE records in this archive. The latest tracked vulnerability was published May 17, 2024; the highest CVE/CNA score is 5.3.

Plugin slug: comments-like-dislike

CVE-2024-25906: Comments Like Dislike: Privilege escalation or authentication bypass

Comments Like Dislike is affected by privilege escalation or authentication bypass. Exposure depends on how the affected operation is made reachable by the site. A successful request can grant permissions or access that the caller should not possess.

PublishedMay 17, 2024
Safe version guidanceSee mitigation notes
Safe version
May 17, 2024 CVE-2024-25906
Comments Like Dislike: Privilege escalation or authentication bypass
Comments Like Dislike is affected by privilege escalation or authentication bypass. Exposure depends on how the affected operation is made reachable by the site. A successful request can grant permissions or access that the caller should not possess.
See mitigation notes
CVE4.3
NVDPending
Aug 17, 2023 CVE-2023-3244
Comments Like Dislike: A security weakness
Comments Like Dislike is affected by a security weakness. Exploitation requires an authenticated WordPress account. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE4.3
NVD4.3
Jun 21, 2021 CVE-2021-24379
Comments Like Dislike: A security weakness
Comments Like Dislike is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE5.3
NVD5.3