CVE-2023-50861: WordPress HUSKY plugin <= 1.3.4.3 - Cross Site Request Forgery (CSRF) vulnerability
Published Mar 15, 2024
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in realmag777 HUSKY – Products Filter for WooCommerce (formerly WOOF).This issue affects HUSKY – Products Filter for WooCommerce (formerly WOOF): from n/a through 1.3.4.3.
Affected Software
3 affected components
Pluginus Husky - Products Filter Professional For Woocommerce Wordpress<1.3.4.4
realmag777 HUSKY – Products Filter for WooCommerce<=1.3.4.3
WordPress HUSKY plugin<=1.3.4.3
Remediation
Information
Update to 1.3.4.4 or a higher version.
Event History
Mar 15, 2024
CVE Published
via MITRE·02:04 PM
Data Sourced
via MITRE·02:04 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-50861?
CVE-2023-50861 is classified as a Cross-Site Request Forgery (CSRF) vulnerability.
2
How do I fix CVE-2023-50861?
To fix CVE-2023-50861, update the HUSKY – Products Filter for WooCommerce plugin to the latest version.
3
What versions are affected by CVE-2023-50861?
CVE-2023-50861 affects HUSKY – Products Filter for WooCommerce versions up to and including 1.3.4.3.
4
What type of attack is possible with CVE-2023-50861?
CVE-2023-50861 allows for Cross-Site Request Forgery (CSRF) attacks, which can manipulate user actions.
5
Who is the vendor of the affected software for CVE-2023-50861?
The vendor of the affected software for CVE-2023-50861 is realmag777.