CVE-2023-47824: WordPress Legal Pages Plugin <= 1.3.8 is vulnerable to Cross Site Request Forgery (CSRF)
Published Nov 22, 2023
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in wpWax Legal Pages – Privacy Policy, Terms & Conditions, GDPR, CCPA, and Cookie Notice Generator plugin <= 1.3.8 versions.
Affected Software
1 affected component
wpWax Legal Pages Wordpress<1.3.9
Remediation
Information
Update to 1.3.9 or a higher version.
Event History
Nov 22, 2023
CVE Published
07:36 PM
Data Sourced
07:36 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability with CVE-2023-47824?
The vulnerability with CVE-2023-47824 is Cross-Site Request Forgery (CSRF).
2
What is the severity of CVE-2023-47824?
The severity of CVE-2023-47824 is high with a severity score of 8.8.
3
Which versions of wpWax Legal Pages plugin are affected by CVE-2023-47824?
Versions up to, but excluding, 1.3.9 of the wpWax Legal Pages plugin are affected by CVE-2023-47824.
4
How does the Cross-Site Request Forgery (CSRF) vulnerability in wpWax Legal Pages plugin affect my website?
The Cross-Site Request Forgery (CSRF) vulnerability in wpWax Legal Pages plugin allows attackers to trick authenticated users into executing unwanted actions on their behalf.
5
Is there a patch available for CVE-2023-47824?
Yes, a patch is available for CVE-2023-47824. Please refer to the provided reference link for more information.