First published: Tue Jul 11 2023(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in HasThemes HT Menu plugin <= 1.2.1 versions.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hasthemes Ht Menu | <1.2.2 |
Update to 1.2.2 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-23791 is a Cross-Site Request Forgery (CSRF) vulnerability found in the HasThemes HT Menu plugin version 1.2.1 and below.
CVE-2023-23791 allows an attacker to trick a user into performing unintended actions on a website where the vulnerable plugin is installed.
CVE-2023-23791 has a severity rating of 8.8 (high).
To fix CVE-2023-23791, you should update the HasThemes HT Menu plugin to version 1.2.2 or later.
You can find more information about CVE-2023-23791 at the following reference: [Link](https://patchstack.com/database/vulnerability/ht-menu-lite/wordpress-ht-menu-wordpress-mega-menu-builder-for-elementor-plugin-1-2-1-cross-site-request-forgery-csrf-vulnerability?_s_id=cve)