First published: Mon Oct 16 2023(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in MailMunch Constant Contact Forms by MailMunch plugin <= 2.0.10 versions.
Credit: audit@patchstack.com audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Constant Contact Forms | <=2.0.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-45647 is a Cross-Site Request Forgery (CSRF) vulnerability in MailMunch Constant Contact Forms by MailMunch plugin version 2.0.10 and below.
The CSRF vulnerability in MailMunch Constant Contact Forms allows an attacker to make unauthorized requests on behalf of a user, potentially leading to malicious actions being performed.
The severity of CVE-2023-45647 is high with a CVSS score of 8.8.
To fix the CSRF vulnerability, update the MailMunch Constant Contact Forms plugin to version 2.0.11 or later.
You can find more information about CVE-2023-45647 at the following URL: [CVE-2023-45647](https://patchstack.com/database/vulnerability/constant-contact-forms-by-mailmunch/wordpress-constant-contact-forms-by-mailmunch-plugin-2-0-10-cross-site-request-forgery-csrf-vulnerability?_s_id=cve)