CVE-2024-31921: WordPress Ultimate Product Catalog plugin <= 5.2.15 - Cross Site Request Forgery (CSRF) vulnerability
Published Apr 15, 2024
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in Etoile Web Design Ultimate Product Catalogue.This issue affects Ultimate Product Catalogue: from n/a through 5.2.15.
Affected Software
1 affected component
Etoile Web Design Ultimate Product Catalog<=5.2.15
Remediation
Information
Update to 5.2.16 or a higher version.
Event History
Apr 15, 2024
CVE Published
via MITRE·09:27 AM
Data Sourced
via MITRE·09:27 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·10:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-31921?
CVE-2024-31921 is classified as a moderate severity Cross-Site Request Forgery vulnerability.
2
How do I fix CVE-2024-31921?
To fix CVE-2024-31921, update the Ultimate Product Catalogue to version 5.2.16 or later.
3
What versions of Ultimate Product Catalogue are affected by CVE-2024-31921?
CVE-2024-31921 affects Ultimate Product Catalogue versions up to and including 5.2.15.
4
Is CVE-2024-31921 present in WordPress Ultimate Product Catalog?
Yes, CVE-2024-31921 is also applicable to WordPress Ultimate Product Catalog up to version 5.2.15.
5
What type of vulnerability is CVE-2024-31921?
CVE-2024-31921 is a Cross-Site Request Forgery (CSRF) vulnerability.