CVE-2024-32101: WordPress Email Marketing for WooCommerce plugin <= 1.14.3 - Cross Site Request Forgery (CSRF) vulnerability
Cross-Site Request Forgery (CSRF) vulnerability in Omnisend Email Marketing for WooCommerce by Omnisend omnisend-connect.This issue affects Email Marketing for WooCommerce by Omnisend: from n/a through <= 1.14.3.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-32101?
CVE-2024-32101 has a high severity rating due to its potential for Cross-Site Request Forgery attacks affecting vulnerable installations.
How do I fix CVE-2024-32101?
To fix CVE-2024-32101, upgrade Omnisend Email Marketing for WooCommerce to version 1.14.4 or later.
What versions are affected by CVE-2024-32101?
CVE-2024-32101 affects Omnisend Email Marketing for WooCommerce versions up to 1.14.3.
What impact does CVE-2024-32101 have on my website?
CVE-2024-32101 allows attackers to perform unauthorized actions on behalf of authenticated users, compromising site security.
Is CVE-2024-32101 being actively exploited?
As of now, there are no confirmed reports of active exploitation for CVE-2024-32101, but users should apply the patch promptly.