First published: Mon Oct 09 2023(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in WPSynchro WP Synchro plugin <= 1.9.1 versions.
Credit: audit@patchstack.com audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
WP Synchro | <=1.9.1 |
Update to 1.10.0 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-41660 is high with a severity value of 8.8.
The Cross-Site Request Forgery (CSRF) vulnerability allows an attacker to trick a user into performing unwanted actions on a website in which the user is authenticated.
Yes, a fix for CVE-2023-41660 is available.
To fix the CSRF vulnerability, it is recommended to update the WPSynchro WP Synchro plugin to a version higher than 1.9.1.
You can find more information about CVE-2023-41660 in the following reference: [link](https://patchstack.com/database/vulnerability/wpsynchro/wordpress-wordpress-migration-plugin-db-files-wp-synchro-plugin-1-9-1-cross-site-request-forgery-csrf-vulnerability?_s_id=cve)