First published: Thu Feb 02 2023(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in JS Help Desk plugin <= 2.7.1 versions.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
JS Help Desk | <2.7.2 |
Update to 2.7.2 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-46842 is high with a CVSS score of 8.8.
CVE-2022-46842 is a Cross-Site Request Forgery (CSRF) vulnerability in the JS Help Desk plugin version 2.7.1 and below.
CVE-2022-46842 allows an attacker to perform unauthorized actions on behalf of an authenticated user, potentially leading to data theft or unauthorized modifications.
To fix CVE-2022-46842, update the JS Help Desk plugin to version 2.7.2 or later.
You can find more information about CVE-2022-46842 at the following link: [link](https://patchstack.com/database/vulnerability/js-support-ticket/wordpress-js-help-desk-plugin-2-7-1-multiple-cross-site-request-forgery-csrf-vulnerabilities?_s_id=cve).