CVE-2023-28987: WordPress Wp Ultimate Review Plugin <= 2.0.3 is vulnerable to Cross Site Request Forgery (CSRF)
Published Nov 12, 2023
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in Wpmet Wp Ultimate Review plugin <= 2.0.3 versions.
Affected Software
1 affected component
Wpmet Wp Ultimate Review Wordpress<=2.0.3
Remediation
Information
Update to 2.1.0 or a higher version.
Event History
Nov 12, 2023
CVE Published
09:28 PM
Data Sourced
09:28 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-28987?
The severity of CVE-2023-28987 is high.
2
What is the vulnerability type of CVE-2023-28987?
CVE-2023-28987 is a Cross-Site Request Forgery (CSRF) vulnerability.
3
Which version of Wp Ultimate Review Plugin is affected by CVE-2023-28987?
Wp Ultimate Review Plugin version <= 2.0.3 is affected by CVE-2023-28987.
4
How can I fix CVE-2023-28987?
To fix CVE-2023-28987, update Wp Ultimate Review Plugin to a version higher than 2.0.3.
5
Where can I find more information about CVE-2023-28987?
You can find more information about CVE-2023-28987 at https://patchstack.com/database/vulnerability/wp-ultimate-review/wordpress-wp-ultimate-review-plugin-2-0-3-cross-site-request-forgery-csrf-vulnerability?_s_id=cve