CVE-2020-24740: Pluck-CMS Pluck

Medium severity, CVSS 4.3. EPSS: 0.4% chance of exploitation in the next 30 days.

An issue was discovered in Pluck 4.7.10-dev2. There is a CSRF vulnerability that can editpage via a /admin.php?action=editpage

Affected products

Published 2021-05-18. Last modified 2026-06-17.