CVE-2024-23521: WordPress Happyforms plugin <= 1.25.10 - Broken Access Control vulnerability
Published Jun 11, 2024
·Updated
Missing Authorization vulnerability in Happyforms.This issue affects Happyforms: from n/a through 1.25.10.
Affected Software
1 affected component
Happyforms Happyforms WordPress<1.25.11
Remediation
Information
Update to 1.25.11 or a higher version.
Event History
Jun 11, 2024
CVE Published
via MITRE·03:34 PM
Data Sourced
via MITRE·03:34 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-23521?
CVE-2024-23521 has a moderate severity level due to the missing authorization vulnerability.
2
How do I fix CVE-2024-23521?
To fix CVE-2024-23521, update the Happyforms plugin to version 1.25.11 or later.
3
What versions of Happyforms are affected by CVE-2024-23521?
CVE-2024-23521 affects all Happyforms versions from n/a through 1.25.10.
4
What impact does CVE-2024-23521 have on my website?
CVE-2024-23521 may allow unauthorized users to access restricted areas or perform actions they should not be allowed to.
5
Is there a known exploit for CVE-2024-23521?
As of now, there are no public exploits reported for CVE-2024-23521.