CVE-2014-10382 (featured_comments)

The feature-comments plugin before 1.2.5 for WordPress has CSRF for featuring or burying a comment.

View Full Alert