CVE-2024-31382: WordPress Blocksy theme <= 2.0.22 - Cross Site Request Forgery (CSRF) vulnerability
Published Apr 15, 2024
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in creativethemeshq Blocksy blocksy.This issue affects Blocksy: from n/a through <= 2.0.22.
Affected Software
3 affected components
Blocksy<2.0.23
Creative Themes Blocksy<=2.0.22
WordPress Blocksy Theme<=2.0.22
Remediation
Information
Update to 2.0.23 or a higher version.
Event History
Apr 15, 2024
CVE Published
via MITRE·10:15 AM
Data Sourced
via MITRE·10:15 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·11:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-31382?
CVE-2024-31382 is classified as a Cross-Site Request Forgery (CSRF) vulnerability in the Blocksy theme.
2
How do I fix CVE-2024-31382?
To fix CVE-2024-31382, it is recommended to update Blocksy to version 2.0.23 or later.
3
Which versions of Blocksy are affected by CVE-2024-31382?
CVE-2024-31382 affects all versions of Blocksy up to and including 2.0.22.
4
What type of vulnerability is CVE-2024-31382?
CVE-2024-31382 is specifically a Cross-Site Request Forgery (CSRF) vulnerability.
5
Who is the vendor of the affected software related to CVE-2024-31382?
The vendor of the affected software related to CVE-2024-31382 is Creative Themes.