CVE-2021-36878: WordPress uListing plugin <= 2.0.5 - Settings Update via Cross-Site Request Forgery (CSRF) vulnerability
Cross-Site Request Forgery (CSRF) vulnerability in WordPress uListing plugin (versions <= 2.0.5) makes it possible for attackers to update settings.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2021-36878?
CVE-2021-36878 is a Cross-Site Request Forgery (CSRF) vulnerability in the WordPress uListing plugin, specifically versions <= 2.0.5.
How does the CVE-2021-36878 vulnerability affect WordPress uListing?
The CVE-2021-36878 vulnerability in WordPress uListing allows attackers to update settings using Cross-Site Request Forgery (CSRF) attacks.
What is the severity of CVE-2021-36878?
CVE-2021-36878 has a severity keyword of 'medium' and a severity value of 4.3.
How can I fix the CVE-2021-36878 vulnerability in WordPress uListing?
To fix the CVE-2021-36878 vulnerability, update your WordPress uListing plugin to a version higher than 2.0.5.
Where can I find more information about the CVE-2021-36878 vulnerability?
You can find more information about the CVE-2021-36878 vulnerability and its patch in the references provided: [link 1](https://patchstack.com/database/vulnerability/ulisting/wordpress-ulisting-plugin-2-0-5-settings-update-via-cross-site-request-forgery-csrf-vulnerability), [link 2](https://wordpress.org/plugins/ulisting/#developers).