First published: Sun Oct 22 2023(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in Wpmet Wp Ultimate Review plugin <= 2.2.4 versions.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
WP Ultimate Review | <=2.2.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-46085 is high with a severity value of 8.8.
CVE-2023-46085 is a Cross-Site Request Forgery (CSRF) vulnerability in the Wp Ultimate Review plugin version <= 2.2.4, which allows attackers to perform unauthorized actions on behalf of authenticated users.
CVE-2023-46085 affects the Wp Ultimate Review plugin version <= 2.2.4.
To fix CVE-2023-46085, it is recommended to update the Wp Ultimate Review plugin to a version higher than 2.2.4.
You can find more information about CVE-2023-46085 at the following reference: [link](https://patchstack.com/database/vulnerability/wp-ultimate-review/wordpress-wp-ultimate-review-plugin-2-2-4-cross-site-request-forgery-csrf-vulnerability?_s_id=cve)