CVE-2023-23804: WordPress HT Feed Plugin <= 1.2.7 is vulnerable to Cross Site Request Forgery (CSRF)
Published Jul 10, 2023
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in HasThemes HT Feed plugin <= 1.2.7 versions.
Affected Software
1 affected component
HasThemes Ht Feed Wordpress<1.2.8
Remediation
Information
Update to 1.2.8 or a higher version.
Event History
Jul 10, 2023
CVE Published
via MITRE·11:54 AM
Data Sourced
via MITRE·11:54 AM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-23804?
The severity of CVE-2023-23804 is high (8.8).
2
What is the description of CVE-2023-23804?
CVE-2023-23804 is a Cross-Site Request Forgery (CSRF) vulnerability in HasThemes HT Feed plugin version 1.2.7 or below.
3
What software versions are affected by CVE-2023-23804?
Versions up to and including 1.2.7 of HasThemes HT Feed plugin are affected by CVE-2023-23804.
4
How can I fix CVE-2023-23804?
To fix CVE-2023-23804, it is recommended to update HasThemes HT Feed plugin to version 1.2.8 or later.
5
Is there any additional information available about CVE-2023-23804?
Yes, you can find additional information about CVE-2023-23804 at the following reference: [link](https://patchstack.com/database/vulnerability/ht-instagram/wordpress-ht-feed-plugin-1-2-7-cross-site-request-forgery-csrf-vulnerability?_s_id=cve)