First published: Mon Jan 29 2024(Updated: )
The Cloudflare Wordpress plugin was found to be vulnerable to improper authentication. The vulnerability enables attackers with a lower privileged account to access data from the Cloudflare API.
Credit: cna@cloudflare.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cloudflare WordPress | <4.12.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-0212 has been rated as a high severity vulnerability due to improper authentication allowing unauthorized access.
To fix CVE-2024-0212, update the Cloudflare WordPress plugin to version 4.12.3 or later.
CVE-2024-0212 affects users of the Cloudflare WordPress plugin versions prior to 4.12.3.
CVE-2024-0212 is classified as an improper authentication vulnerability.
Yes, CVE-2024-0212 can allow attackers with lower privileges to access sensitive data from the Cloudflare API.