CVE-2023-26532: WordPress Social Auto Poster Plugin <= 2.1.4 is vulnerable to Cross Site Request Forgery (CSRF)
Published Nov 22, 2023
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in AccessPress Themes Social Auto Poster plugin <= 2.1.4 versions.
Affected Software
1 affected component
Accesspressthemes Social Auto Poster Wordpress<=2.1.4
Event History
Nov 22, 2023
CVE Published
02:00 PM
Data Sourced
02:00 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2023-26532?
CVE-2023-26532 is a Cross-Site Request Forgery (CSRF) vulnerability in the AccessPress Themes Social Auto Poster plugin version 2.1.4 and earlier.
2
How severe is CVE-2023-26532?
CVE-2023-26532 has a severity score of 8.8 (high).
3
What is Cross-Site Request Forgery (CSRF)?
Cross-Site Request Forgery (CSRF) is an attack that tricks the victim into making a malicious request on behalf of the attacker, without the victim's knowledge or consent.
4
Which version of AccessPress Themes Social Auto Poster plugin is vulnerable?
AccessPress Themes Social Auto Poster plugin version 2.1.4 and earlier are vulnerable to CVE-2023-26532.
5
How do I fix CVE-2023-26532?
To fix CVE-2023-26532, update the AccessPress Themes Social Auto Poster plugin to a version higher than 2.1.4.