CVE-2022-36424: WordPress Easy Appointments Plugin <= 3.11.9 is vulnerable to Cross Site Request Forgery (CSRF)
Cross-Site Request Forgery (CSRF) vulnerability in Nikola Loncar Easy Appointments plugin <= 3.11.9 versions.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2022-36424?
CVE-2022-36424 is a Cross-Site Request Forgery (CSRF) vulnerability in the Nikola Loncar Easy Appointments plugin <= 3.11.9.
How severe is CVE-2022-36424?
CVE-2022-36424 has a severity rating of 8.8 (high).
What software versions are affected by CVE-2022-36424?
CVE-2022-36424 affects Nikola Loncar Easy Appointments plugin versions up to and including 3.11.9.
How can I fix CVE-2022-36424?
To fix CVE-2022-36424, it is recommended to update the Nikola Loncar Easy Appointments plugin to a version that is not affected by the vulnerability.
Where can I find more information about CVE-2022-36424?
You can find more information about CVE-2022-36424 at the following reference: [link](https://patchstack.com/database/vulnerability/easy-appointments/wordpress-easy-appointments-plugin-3-11-9-cross-site-request-forgery-csrf-vulnerability?_s_id=cve)