CVE-2024-32452: WordPress Shopping Cart & eCommerce Store plugin <= 5.5.19 - Cross Site Request Forgery (CSRF) vulnerability
Published Apr 15, 2024
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in WP EasyCart.This issue affects WP EasyCart: from n/a through 5.5.19.
Affected Software
1 affected component
WP EasyCart WP EasyCart<=5.5.19
Remediation
Information
Update to 5.6.0 or a higher version.
Event History
Apr 15, 2024
CVE Published
via MITRE·07:49 AM
Data Sourced
via MITRE·07:49 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-32452?
CVE-2024-32452 is classified as a Cross-Site Request Forgery (CSRF) vulnerability affecting WP EasyCart versions up to 5.5.19.
2
How do I fix CVE-2024-32452?
To fix CVE-2024-32452, update your WP EasyCart plugin to the latest version released after 5.5.19.
3
Who is affected by CVE-2024-32452?
Users of WP EasyCart versions from n/a to 5.5.19 are vulnerable to CVE-2024-32452.
4
What is the impact of CVE-2024-32452?
CVE-2024-32452 can allow an attacker to trick a user into executing unwanted actions on a web application in which they are authenticated.
5
Is there a public exploit for CVE-2024-32452?
As of now, there are no known public exploits for CVE-2024-32452, but it is recommended to patch the vulnerability to prevent potential attacks.