CVE-2024-32436: WordPress Gift Cards plugin <= 4.4.0 - Cross Site Request Forgery (CSRF) vulnerability
Published Apr 15, 2024
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in Codemenschen Gift Vouchers.This issue affects Gift Vouchers: from n/a through 4.4.0.
Affected Software
1 affected component
Codemenschen Gift Vouchers (WordPress plugin)<=4.4.0
Remediation
Information
Update to 4.4.1 or a higher version.
Event History
Apr 15, 2024
CVE Published
via MITRE·08:08 AM
Data Sourced
via MITRE·08:08 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·09:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-32436?
CVE-2024-32436 is classified as a Cross-Site Request Forgery (CSRF) vulnerability impacting Codemenschen Gift Vouchers.
2
How do I fix CVE-2024-32436?
To fix CVE-2024-32436, update the Codemenschen Gift Vouchers plugin to the latest version available.
3
Which versions are affected by CVE-2024-32436?
CVE-2024-32436 affects Codemenschen Gift Vouchers from versions prior to 4.4.0.
4
Is CVE-2024-32436 present in WordPress Gift Cards?
Yes, CVE-2024-32436 affects versions of WordPress Gift Cards up to and including 4.4.0.
5
What is Cross-Site Request Forgery in the context of CVE-2024-32436?
Cross-Site Request Forgery in CVE-2024-32436 allows attackers to perform actions on behalf of authenticated users without their consent.