CVE-2023-1024: WP Meta SEO <= 4.5.3 - Missing Authorization in 'regenerateSitemaps'
The WP Meta SEO plugin for WordPress is vulnerable to unauthorized sitemap generation due to a missing capability check on the regenerateSitemaps function in versions up to, and including, 4.5.3. This makes it possible for authenticated attackers with subscriber-level access to generate sitemaps. This vulnerability occurred as a result of the plugin relying on nonce checks as a means of access control, and that nonce being accessible to all authenticated users regardless of role.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID of this vulnerability?
The vulnerability ID of this vulnerability is CVE-2023-1024.
What is the severity of CVE-2023-1024?
The severity of CVE-2023-1024 is medium with a severity value of 4.3.
What is affected by CVE-2023-1024?
The WP Meta SEO plugin for WordPress versions up to and including 4.5.3 is affected by CVE-2023-1024.
What is the impact of CVE-2023-1024?
CVE-2023-1024 allows authenticated attackers with subscriber-level access to generate sitemaps.
How do I fix CVE-2023-1024?
To fix CVE-2023-1024, update the WP Meta SEO plugin to a version higher than 4.5.3.