[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fJH3MUuFilNXfkjH5BpZuQpJdGKf9sAeS-kjHGj8_lrM":3},{"id":4,"url_slug":5,"title":6,"description":7,"plugin_slug":8,"theme_slug":9,"affected_versions":10,"patched_in_version":11,"severity":12,"cvss_score":13,"cvss_vector":14,"vuln_type":15,"published_date":16,"updated_date":17,"references":18,"days_to_patch":20},"CVE-2021-36865","quiz-and-survey-master-best-quiz-exam-and-survey-plugin-for-wordpress-insecure-direct-object-reference","Quiz And Survey Master – Best Quiz, Exam and Survey Plugin for WordPress \u003C= 7.3.4 - Insecure Direct Object Reference","The Quiz And Survey Master plugin for WordPress is vulnerable to insecure direct object reference in versions up to, and including, 7.3.4. This is due to insufficient validation on the key controlling a quiz's id. This makes it possible for authenticated attackers with author-level capabilities and above to change arbitrary quiz content.","quiz-master-next",null,"\u003C=7.3.4","7.3.5","medium",5.4,"CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:L\u002FUI:N\u002FS:U\u002FC:L\u002FI:L\u002FA:N","Authorization Bypass Through User-Controlled Key","2022-09-29 00:00:00","2024-01-22 19:56:02",[19],"https:\u002F\u002Fwww.wordfence.com\u002Fthreat-intel\u002Fvulnerabilities\u002Fid\u002F6975e84e-06ab-41b1-ae39-64685a878d15?source=api-prod",481]