CVE-2024-30421: WordPress Events Manager plugin <= 6.4.7.1 - Cross Site Request Forgery (CSRF) vulnerability
Cross-Site Request Forgery (CSRF) vulnerability in Pixelite Events Manager.This issue affects Events Manager: from n/a through 6.4.7.1.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-30421?
CVE-2024-30421 is classified as a high severity Cross-Site Request Forgery (CSRF) vulnerability affecting Pixelite Events Manager versions up to 6.4.7.1.
How do I fix CVE-2024-30421?
To fix CVE-2024-30421, update Pixelite Events Manager to a version later than 6.4.7.1 where the vulnerability has been patched.
What are the potential consequences of CVE-2024-30421?
Exploitation of CVE-2024-30421 could allow attackers to perform unauthorized actions on behalf of logged-in users.
Is my version of Pixelite Events Manager affected by CVE-2024-30421?
If you are using Pixelite Events Manager version 6.4.7.1 or earlier, your installation is affected by CVE-2024-30421.
Who is impacted by CVE-2024-30421?
Users of Pixelite Events Manager and the WordPress Events Manager plugin versions up to 6.4.7.1 are impacted by CVE-2024-30421.