First published: Mon Oct 16 2023(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in Marco Milesi WP Attachments allows Cross Site Request Forgery.This issue affects WP Attachments: from n/a through 5.0.11.
Credit: audit@patchstack.com audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Marcomilesi Wp Attachments | <=5.0.6 |
Update to 5.0.12 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-45651 is high.
The affected software for CVE-2023-45651 is Marco Milesi WP Attachments plugin version 5.0.6 and below.
The CWE ID of CVE-2023-45651 is 352.
To fix the CSRF vulnerability in Marco Milesi WP Attachments plugin, update to a version higher than 5.0.6.
More information about CVE-2023-45651 can be found at https://patchstack.com/database/vulnerability/wp-attachments/wordpress-wp-attachments-plugin-5-0-6-cross-site-request-forgery-csrf-vulnerability?_s_id=cve