CVE-2023-39917: WordPress Photo Gallery by Ays Plugin <= 5.2.6 is vulnerable to Cross Site Request Forgery (CSRF)
Published Oct 3, 2023
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in Photo Gallery Team Photo Gallery by Ays – Responsive Image Gallery plugin <= 5.2.6 versions.
Affected Software
1 affected component
ays-pro Photo Gallery Wordpress<=5.2.6
Remediation
Information
Update to 5.2.7 or a higher version.
Event History
Oct 3, 2023
CVE Published
via MITRE·11:14 AM
Data Sourced
via MITRE·11:14 AM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2023-39917?
CVE-2023-39917 is a Cross-Site Request Forgery (CSRF) vulnerability found in the Photo Gallery Team Photo Gallery by Ays - Responsive Image Gallery plugin.
2
What is the severity of CVE-2023-39917?
The severity of CVE-2023-39917 is high with a CVSS score of 8.8.
3
How does CVE-2023-39917 affect the Photo Gallery Team Photo Gallery plugin?
CVE-2023-39917 affects Photo Gallery Team Photo Gallery plugin versions up to and including 5.2.6.
4
Is there a fix for CVE-2023-39917?
Yes, a fix for CVE-2023-39917 is available. It is recommended to update to the latest version of the Photo Gallery Team Photo Gallery plugin.
5
Where can I find more information about CVE-2023-39917?
You can find more information about CVE-2023-39917 in the Patchstack vulnerability database.