First published: Sat Nov 18 2023(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in User Local Inc UserHeat Plugin.This issue affects UserHeat Plugin: from n/a through 1.1.6.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Userlocal Userheat Plugin | <=1.1.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-47553 is a Cross Site Request Forgery (CSRF) vulnerability in the UserHeat Plugin for WordPress, version 1.1.6 and below.
CVE-2023-47553 has a severity rating of 8.8 (high).
CVE-2023-47553 affects UserHeat Plugin version 1.1.6 and below, allowing for Cross-Site Request Forgery (CSRF) attacks.
Cross-Site Request Forgery (CSRF) is an attack that tricks the victim into submitting a malicious request, often without their knowledge, which can lead to unauthorized actions.
To fix CVE-2023-47553, it is recommended to update UserHeat Plugin to a version beyond 1.1.6.