CVE-2022-40692: WordPress Sunshine Photo Cart Plugin <= 2.9.13 is vulnerable to Cross Site Request Forgery (CSRF)
Published Feb 2, 2023
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in WP Sunshine Sunshine Photo Cart plugin <= 2.9.13 versions.
Affected Software
1 affected component
sunshinephotocart Sunshine Photo Cart Wordpress<2.9.14
Remediation
Information
Update to 2.9.14 or higher version.
Event History
Feb 2, 2023
CVE Published
via MITRE·03:58 PM
Data Sourced
via MITRE·03:58 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·09:22 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-40692?
The severity of CVE-2022-40692 is rated as high with a CVSS score of 8.8.
2
How can I fix the Cross-Site Request Forgery vulnerability in WP Sunshine Sunshine Photo Cart plugin CVE-2022-40692?
To fix the CSRF vulnerability in WP Sunshine Sunshine Photo Cart plugin CVE-2022-40692, update the plugin to version 2.9.14 or later.