CVE-2023-37968: WordPress Falang multilanguage Plugin <= 1.3.39 is vulnerable to Cross Site Request Forgery (CSRF)
Cross-Site Request Forgery (CSRF) vulnerability in Faboba Falang multilanguage for WordPress plugin <= 1.3.39 versions.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
WordPress Faboba Falang multilanguage pluginto a version that resolves this vulnerability.Fixed in 1.3.40
Event History
Frequently Asked Questions
What is the severity of CVE-2023-37968?
CVE-2023-37968 is classified as a medium severity Cross-Site Request Forgery (CSRF) vulnerability.
How do I fix CVE-2023-37968?
To fix CVE-2023-37968, update the Faboba Falang multilanguage plugin to version 1.3.40 or later.
What software is affected by CVE-2023-37968?
CVE-2023-37968 affects the Faboba Falang multilanguage plugin for WordPress versions 1.3.39 and below.
What can an attacker do with CVE-2023-37968?
An attacker can exploit CVE-2023-37968 to perform unauthorized actions on behalf of authenticated users through CSRF.
Is there a workaround for CVE-2023-37968?
A temporary workaround for CVE-2023-37968 is to deactivate the Faboba Falang multilanguage plugin until it is updated.