CVE-2017-8875: Codection Clean Login

Medium severity, CVSS 6.5. EPSS: 0.6% chance of exploitation in the next 30 days.

CSRF in the Clean Login plugin before 1.8 for WordPress allows remote attackers to change the login redirect URL or logout redirect URL.

Affected products

Published 2017-05-10. Last modified 2026-06-17.