CVE-2023-51683: WordPress Easy PayPal Buy Now Button Plugin <= 1.8.1 is vulnerable to Cross Site Request Forgery (CSRF)
Published Feb 28, 2024
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in Scott Paterson Easy PayPal & Stripe Buy Now Button.This issue affects Easy PayPal & Stripe Buy Now Button: from n/a through 1.8.1.
Affected Software
3 affected components
Wpplugin Easy Paypal \& Stripe Buy Now Button Wordpress<1.8.2
Scott Paterson Easy PayPal & Stripe Buy Now Button<=1.8.1
WordPress Easy PayPal Buy Now Button Plugin<=1.8.1
Remediation
Information
Update to 1.8.2 or a higher version.
Event History
Feb 28, 2024
CVE Published
via MITRE·04:45 PM
Data Sourced
via MITRE·04:45 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-51683?
CVE-2023-51683 is classified as a high severity Cross-Site Request Forgery (CSRF) vulnerability.
2
How do I fix CVE-2023-51683?
To fix CVE-2023-51683, upgrade the Easy PayPal & Stripe Buy Now Button to version 1.8.2 or later.
3
Who is affected by CVE-2023-51683?
CVE-2023-51683 affects users of Easy PayPal & Stripe Buy Now Button from versions n/a through 1.8.1.
4
What type of vulnerability is CVE-2023-51683?
CVE-2023-51683 is a Cross-Site Request Forgery (CSRF) vulnerability.
5
What are the implications of CVE-2023-51683?
Exploitation of CVE-2023-51683 could allow attackers to perform unauthorized actions on behalf of authenticated users.