CVE-2017-18504: CSRF
Published Aug 12, 2019
·Updated
The twitter-cards-meta plugin before 2.5.0 for WordPress has CSRF.
Affected Software
1 affected component
WPDeveloper Twitter Cards Meta Wordpress<2.5.0
Event History
Aug 12, 2019
CVE Published
via MITRE·03:36 PM
Data Sourced
via MITRE·03:36 PM
Description
Frequently Asked Questions
1
What is CVE-2017-18504?
CVE-2017-18504 is a vulnerability in the twitter-cards-meta plugin before version 2.5.0 for WordPress that allows for CSRF attacks.
2
How severe is CVE-2017-18504?
CVE-2017-18504 has a severity rating of 8.8 (high).
3
What is CSRF?
CSRF stands for Cross-Site Request Forgery, which is an attack that tricks the victim into submitting a malicious request.
4
How does CVE-2017-18504 affect WordPress?
CVE-2017-18504 affects the twitter-cards-meta plugin for WordPress, allowing attackers to perform CSRF attacks.
5
How do I fix CVE-2017-18504?
To fix CVE-2017-18504, it is recommended to update the twitter-cards-meta plugin to version 2.5.0 or newer.