First published: Tue Oct 03 2023(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in ThimPress WP Pipes plugin <= 1.4.0 versions.
Credit: audit@patchstack.com audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Thimpress Wp Pipes | <=1.4.0 |
Update to 1.4.1 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-40009 is a Cross-Site Request Forgery (CSRF) vulnerability found in the ThimPress WP Pipes plugin versions up to 1.4.0.
CVE-2023-40009 has a severity rating of 6.5 (Medium).
CVE-2023-40009 allows attackers to perform Cross-Site Request Forgery (CSRF) attacks on websites that have the ThimPress WP Pipes plugin installed with versions up to 1.4.0.
Yes, the fix for CVE-2023-40009 is available in the 1.4.1 version of the ThimPress WP Pipes plugin.
More information about CVE-2023-40009 can be found at https://patchstack.com/database/vulnerability/wp-pipes/wordpress-wp-pipes-plugin-1-4-0-multiple-cross-site-request-forgery-csrf-vulnerability.