First published: Tue Aug 23 2022(Updated: )
Cross-Site Request Forgery (CSRF) vulnerabilities in WPChill Gallery PhotoBlocks plugin <= 1.2.6 at WordPress.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Wpchill Gallery Photoblocks | <=1.2.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-36292 is high, with a severity value of 8.8.
CVE-2022-36292 is a Cross-Site Request Forgery (CSRF) vulnerability that affects the WPChill Gallery PhotoBlocks plugin version 1.2.6 and below.
To fix CVE-2022-36292, update the WPChill Gallery PhotoBlocks plugin to version 1.2.7 or above.
Cross-Site Request Forgery (CSRF) is an attack that tricks the victim into submitting a malicious request, often leading to unauthorized actions on their behalf.
More information about WPChill Gallery PhotoBlocks plugin can be found on the WordPress plugin directory.