CVE-2019-5960: CUSTOM4WEB Wp Open Graph

High severity, CVSS 8.8. EPSS: 0.6% chance of exploitation in the next 30 days.

Cross-site request forgery (CSRF) vulnerability in WP Open Graph 1.6.1 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors.

Affected products

  • CUSTOM4WEB Wp Open Graph: up to and including 1.6.1

Published 2019-07-05. Last modified 2026-06-17.