CVE-2023-50878: WordPress MStore API Plugin <= 4.10.1 is vulnerable to Cross Site Request Forgery (CSRF)
Published Dec 29, 2023
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in InspireUI MStore API.This issue affects MStore API: from n/a through 4.10.1.
Affected Software
1 affected component
InspireUI Mstore Api Wordpress<=4.10.1
Remediation
Information
Update to 4.10.2 or a higher version.
Event History
Dec 29, 2023
CVE Published
via MITRE·12:32 PM
Data Sourced
via MITRE·12:32 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-50878?
CVE-2023-50878 is categorized as a medium severity Cross-Site Request Forgery (CSRF) vulnerability.
2
How do I fix CVE-2023-50878?
To fix CVE-2023-50878, update the InspireUI MStore API to the latest version beyond 4.10.1.
3
What software is affected by CVE-2023-50878?
CVE-2023-50878 affects InspireUI MStore API versions up to and including 4.10.1.
4
What type of vulnerability is CVE-2023-50878?
CVE-2023-50878 is a Cross-Site Request Forgery (CSRF) vulnerability.
5
Can CVE-2023-50878 lead to unauthorized actions?
Yes, CVE-2023-50878 can allow attackers to perform unauthorized actions on behalf of authenticated users.