CVE-2023-24421: WordPress PHP Compatibility Checker Plugin <= 1.5.2 is vulnerable to Cross Site Request Forgery (CSRF)
Published Jul 11, 2023
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in WP Engine PHP Compatibility Checker plugin <= 1.5.2 versions.
Affected Software
1 affected component
Wpengine Php Compatibility Checker Wordpress<1.6.0
Remediation
Information
Update to 1.6.0 or a higher version.
Event History
Jul 11, 2023
CVE Published
via MITRE·07:22 AM
Data Sourced
via MITRE·07:22 AM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-24421?
CVE-2023-24421 is classified as a High severity cross-site request forgery (CSRF) vulnerability.
2
How do I fix CVE-2023-24421?
To fix CVE-2023-24421, update the WP Engine PHP Compatibility Checker plugin to version 1.6.0 or later.
3
Which versions are affected by CVE-2023-24421?
CVE-2023-24421 affects WP Engine PHP Compatibility Checker plugin versions 1.5.2 and earlier.
4
What type of vulnerability is CVE-2023-24421?
CVE-2023-24421 is a Cross-Site Request Forgery (CSRF) vulnerability.
5
Who is impacted by CVE-2023-24421?
Users of the WP Engine PHP Compatibility Checker plugin versions 1.5.2 and below are impacted by CVE-2023-24421.