First published: Sun Dec 04 2022(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in Oceanwp sticky header plugin <= 1.0.8 on WordPress.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
OceanWP Sticky Header | <=1.0.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-35730 is medium with a CVSS score of 6.5.
The affected software for CVE-2022-35730 is Oceanwp sticky header plugin version up to 1.0.8 on WordPress.
The CWE id for CVE-2022-35730 is CWE-352.
To fix CVE-2022-35730, update the Oceanwp sticky header plugin to a version higher than 1.0.8.
You can find more information about CVE-2022-35730 at the following link: [CVE-2022-35730](https://patchstack.com/database/vulnerability/sticky-header-oceanwp/wordpress-oceanwp-sticky-header-plugin-1-0-8-cross-site-request-forgery-csrf-vulnerability?_s_id=cve)