CVE-2024-30462: WordPress HUSKY plugin <= 1.3.5.1 - Cross Site Request Forgery (CSRF) vulnerability
Published Mar 29, 2024
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in realmag777 HUSKY – Products Filter for WooCommerce (formerly WOOF).This issue affects HUSKY – Products Filter for WooCommerce (formerly WOOF): from n/a through 1.3.5.1.
Affected Software
3 affected components
Pluginus Husky - Products Filter Professional For Woocommerce Wordpress<1.3.5.2
realmag777 HUSKY – Products Filter for WooCommerce<=1.3.5.1
WordPress HUSKY<=1.3.5.1
Remediation
Information
Update to 1.3.5.2 or a higher version.
Event History
Mar 29, 2024
CVE Published
via MITRE·04:24 PM
Data Sourced
via MITRE·04:24 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-30462?
The severity of CVE-2024-30462 has not been explicitly rated, but it involves a Cross-Site Request Forgery (CSRF) vulnerability that could potentially allow unauthorized actions.
2
How do I fix CVE-2024-30462?
To fix CVE-2024-30462, update the HUSKY – Products Filter for WooCommerce plugin to a version later than 1.3.5.1.
3
Which versions of the HUSKY – Products Filter for WooCommerce are affected by CVE-2024-30462?
CVE-2024-30462 affects HUSKY – Products Filter for WooCommerce versions up to and including 1.3.5.1.
4
What type of vulnerability is CVE-2024-30462?
CVE-2024-30462 is classified as a Cross-Site Request Forgery (CSRF) vulnerability.
5
Who is the vendor associated with CVE-2024-30462?
The vendor associated with CVE-2024-30462 is realmag777.