Plugin LBstopattack
Plugin LBstopattack has one disclosed vulnerability in the WordSec catalog, all reported in 2022; it is fixed as of September 2026. Their average CVSS score is 8.8, and the most serious one scores 8.8 out of 10. Severity breakdown: 0 critical and 1 high.
The most common weakness is Cross-Site Request Forgery (CSRF), behind 1 of the records (100%).
The one issue recorded for Plugin LBstopattack has a vendor fix available, so running the current release closes it.
All of these findings were reported by Daniel Ruf. Plugin LBstopattack is installed on roughly 10 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 6.9.7.
CVE-2022-3097Plugin LBstopattack <= 1.1.2 - Cross-Site Request Forgery
Read the full analysisVulnerability Records

Plugin LBstopattack
Author
Laurent
The LBStopAttack plugin stops attacks made by SLQ requests via URL’s and attempted file inclusions. Free plugin features This free module is easy to use and allows you: Block SQL attacks Block attempted file inclusions Display an error page in the event of an attack and thus block robots To redirect the attacks to a third-party site such as that of the Ministry of the Interior to calm the offender To receive notification emails of each attack with the details of this attack To block the IPs of the attackers for a given time Languages Our Plugin supports the following languages: English, French Support If you have any issues at all setting up LBStopattack WordPress Plugin, you can contact our customer support team by offer 24/7 email support in English or French. To find out more about who we are and what we do, here are some useful links: Laubrotel Website Our Email
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C