The Titan Anti-spam & Security WordPress plugin before 7.3.1 does not properly checks HTTP headers in order to validate the origin IP address, allowing threat actors to bypass it's block feature by spoofing the headers.
Metrics
Affected Vendors & Products
References
History
Sun, 13 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
epss
|

Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2024-08-03T00:52:59.794Z
Reserved: 2022-08-17T00:00:00
Link: CVE-2022-2877

No data.

Status : Modified
Published: 2022-09-16T09:15:11.137
Modified: 2024-11-21T07:01:51.383
Link: CVE-2022-2877

No data.