CVE-2022-45369: WordPress Plugin for Google Reviews plugin <= 2.2.2 - Auth. Broken Access Control vulnerability
Auth. (subscriber+) Broken Access Control vulnerability in Plugin for Google Reviews plugin <= 2.2.2 on WordPress.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
WordPress Plugin for Google Reviewsto a version that resolves this vulnerability.Fixed in 2.2.3
Event History
Frequently Asked Questions
What is the severity of CVE-2022-45369?
CVE-2022-45369 is classified as a high severity vulnerability due to broken access control in the Plugin for Google Reviews plugin.
How do I fix CVE-2022-45369?
To fix CVE-2022-45369, update the Plugin for Google Reviews to version 2.2.3 or later.
Which versions of Plugin for Google Reviews are affected by CVE-2022-45369?
CVE-2022-45369 affects Plugin for Google Reviews versions 2.2.2 and earlier.
What type of vulnerability is CVE-2022-45369?
CVE-2022-45369 is an authentication-related vulnerability concerning broken access control.
Who is impacted by CVE-2022-45369?
Users of WordPress running the affected version of the Plugin for Google Reviews are impacted by CVE-2022-45369.