CVE-2023-47870: Gvectors Wpforo Forum
High severity, CVSS 8.8. EPSS: 0.3% chance of exploitation in the next 30 days.
Cross-Site Request Forgery (CSRF), Missing Authorization vulnerability in gVectors Team wpForo Forum wpforo allows Cross Site Request Forgery, Accessing Functionality Not Properly Constrained by ACLs leading to forced all users log out.This issue affects wpForo Forum: from n/a through 2.2.6.
Affected products
- Gvectors Wpforo Forum: up to and including 2.2.6
Published 2023-11-30. Last modified 2026-06-17.