First published: Mon Apr 11 2022(Updated: )
Cross-Site Request Forgery (CSRF) in StylemixThemes eRoom – Zoom Meetings & Webinar (WordPress plugin) <= 1.3.7 allows an attacker to Sync with Zoom Meetings.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Stylemixthemes Eroom - Zoom Meetings \& Webinar | <=1.3.7 |
Update to 1.3.8 or higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this security issue is CVE-2022-25614.
The severity of CVE-2022-25614 is medium.
StylemixThemes eRoom - Zoom Meetings & Webinar (WordPress plugin) version 1.3.7 and below is affected by CVE-2022-25614.
An attacker can exploit CVE-2022-25614 by conducting Cross-Site Request Forgery (CSRF) attacks to perform actions on behalf of authenticated users.
Yes, a patch or update is available for CVE-2022-25614. It is recommended to update the StylemixThemes eRoom - Zoom Meetings & Webinar plugin to version 1.3.8 or later.