CVE-2022-35730: WordPress Oceanwp sticky header plugin <= 1.0.8 is vulnerable to Cross Site Request Forgery (CSRF)
Published Dec 4, 2022
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in Oceanwp sticky header plugin <= 1.0.8 on WordPress.
Affected Software
1 affected component
Oceanwp Sticky Header Wordpress<=1.0.8
Event History
Dec 4, 2022
CVE Published
via MITRE·10:35 PM
Data Sourced
via MITRE·10:35 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-35730?
The severity of CVE-2022-35730 is medium with a CVSS score of 6.5.
2
What is the affected software for CVE-2022-35730?
The affected software for CVE-2022-35730 is Oceanwp sticky header plugin version up to 1.0.8 on WordPress.
3
What is the CWE id for CVE-2022-35730?
The CWE id for CVE-2022-35730 is CWE-352.
4
How can I fix CVE-2022-35730?
To fix CVE-2022-35730, update the Oceanwp sticky header plugin to a version higher than 1.0.8.
5
Where can I find more information about CVE-2022-35730?
You can find more information about CVE-2022-35730 at the following link: [CVE-2022-35730](https://patchstack.com/database/vulnerability/sticky-header-oceanwp/wordpress-oceanwp-sticky-header-plugin-1-0-8-cross-site-request-forgery-csrf-vulnerability?_s_id=cve)