First published: Wed Nov 22 2023(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in Pixelgrade Customify – Intuitive Website Styling plugin <= 2.10.4 versions.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Pixelgrade Customify | <=2.10.4 |
Update to 2.10.5 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-27633 is a Cross-Site Request Forgery (CSRF) vulnerability present in the Pixelgrade Customify – Intuitive Website Styling plugin version 2.10.4 and earlier for WordPress.
CVE-2023-27633 has a severity rating of 8.8 (high).
If you are using the Pixelgrade Customify plugin version 2.10.4 or earlier for WordPress, your website is vulnerable to CSRF attacks.
To fix CVE-2023-27633, update the Pixelgrade Customify plugin to version 2.10.5 or later.
You can find more information about CVE-2023-27633 in the Patchstack vulnerability database: https://patchstack.com/database/vulnerability/customify/wordpress-customify-plugin-2-10-4-cross-site-request-forgery-csrf-vulnerability?_s_id=cve