Vulnerability CVE-2022-2389


Published: 2022-08-22

Description:
The Abandoned Cart Recovery for WooCommerce, Follow Up Emails, Newsletter Builder & Marketing Automation By Autonami WordPress plugin before 2.1.2 does not have authorisation and CSRF checks in one of its AJAX action, allowing any authenticated users, such as subscriber to create automations

Type:

CWE-352

(Cross-Site Request Forgery (CSRF))

 References:
https://wpscan.com/vulnerability/e70f00b7-6251-476e-9297-60af509e6ad9

Copyright 2026, cxsecurity.com

 

Back to Top