CVE-2023-34020: WordPress Uncanny Toolkit for LearnDash plugin <= 3.6.4.3 - Open Redirection vulnerability
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Uncanny Owl Uncanny Toolkit for LearnDash.This issue affects Uncanny Toolkit for LearnDash: from n/a through 3.6.4.3.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-34020?
CVE-2023-34020 is classified as an Open Redirect vulnerability that can lead to phishing attacks and expose users to untrusted sites.
How do I fix CVE-2023-34020?
To fix CVE-2023-34020, update the Uncanny Toolkit for LearnDash to version 3.6.4.4 or later.
Which versions of Uncanny Toolkit for LearnDash are affected by CVE-2023-34020?
CVE-2023-34020 affects Uncanny Toolkit for LearnDash versions up to and including 3.6.4.3.
What is the impact of CVE-2023-34020?
CVE-2023-34020 allows attackers to redirect users to untrusted websites, potentially resulting in data theft or malware infection.
Is there a workaround for CVE-2023-34020 if I cannot update immediately?
If you cannot update immediately, consider disabling the affected features of the Uncanny Toolkit for LearnDash to mitigate the risk associated with CVE-2023-34020.