First published: Sun Nov 12 2023(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in Wow-Company Side Menu Lite – add sticky fixed buttons plugin <= 4.0 versions.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Wow-company Side Menu Lite | <=4.0 |
Update to 4.0.1 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this issue is CVE-2023-27418.
The title of this vulnerability is 'WordPress Side Menu Lite Plugin <= 4.0 is vulnerable to Cross Site Request Forgery (CSRF)'.
The severity of CVE-2023-27418 is high with a CVSS score of 8.8.
This vulnerability affects the Wow-Company Side Menu Lite plugin versions <= 4.0.
Yes, a patch for this vulnerability is available. You can find more information on the patch at the following link: [https://patchstack.com/database/vulnerability/side-menu-lite/wordpress-side-menu-lite-plugin-4-0-cross-site-request-forgery-csrf-vulnerability?_s_id=cve](https://patchstack.com/database/vulnerability/side-menu-lite/wordpress-side-menu-lite-plugin-4-0-cross-site-request-forgery-csrf-vulnerability?_s_id=cve)