First published: Fri Mar 11 2022(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability affecting Delete Marker Category, Delete Map, and Copy Map functions in WP Google Map plugin (versions <= 4.2.3).
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
WP Google Map | <4.2.4 | |
Fedora | =34 | |
Fedora | =35 | |
Fedora | =36 |
Update to 4.2.4 or higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-25600 is a Cross-Site Request Forgery (CSRF) vulnerability affecting the Delete Marker Category, Delete Map, and Copy Map functions in WP Google Map plugin versions <= 4.2.3.
The affected software includes Flippercode WP Google Map versions <= 4.2.3 and Fedora versions 34, 35, and 36.
CVE-2022-25600 has a severity rating of 8.8 (high).
To fix CVE-2022-25600, update your WP Google Map plugin to a version higher than 4.2.3.
You can find more information about CVE-2022-25600 at the following references: <br>- [Reference 1](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/7CR6VGITIB2TXXZ6B5QRRWPU5S4BXQPD/) <br>- [Reference 2](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/IJX6NVXSRN3RX3YUVEJQ4WUTQSDL3DSR/) <br>- [Reference 3](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PZQCIZQI267YHVYSFB3CRKNK3F4ASPLK/)