First published: Tue Mar 26 2024(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in Metagauss RegistrationMagic.This issue affects RegistrationMagic: from n/a through 5.3.0.0.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
RegistrationMagic User Registration Plugin | <5.3.1.0 | |
Metagauss Leadmagic | >=5.3.0.0 | |
RegistrationMagic | <=5.3.0.0 |
Update to 5.3.1.0 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-2951 has been classified as a high severity Cross-Site Request Forgery vulnerability.
To fix CVE-2024-2951, upgrade Metagauss RegistrationMagic to the latest version available beyond 5.3.0.0.
CVE-2024-2951 affects all versions of RegistrationMagic from n/a up to and including 5.3.0.0.
A Cross-Site Request Forgery vulnerability allows an attacker to perform actions on behalf of a user without their consent.
The vendor affected by CVE-2024-2951 is Metagauss, specifically for their RegistrationMagic plugin.