First published: Wed Apr 17 2024(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in BMI Adult & Kid Calculator allows Stored XSS.This issue affects BMI Adult & Kid Calculator: from n/a through 1.2.1.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
BMI Calculator | >undefined | |
WordPress BMI Adult & Kid Calculator plugin | <=1.2.1 |
Update to 1.2.2 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-32550 is a Cross-Site Request Forgery (CSRF) vulnerability that can lead to stored XSS attacks.
To fix CVE-2024-32550, update the BMI Adult & Kid Calculator and the WordPress BMI Adult & Kid Calculator plugin to the latest version.
CVE-2024-32550 affects all versions of BMI Adult & Kid Calculator up to 1.2.1.
Yes, CVE-2024-32550 affects the WordPress BMI Adult & Kid Calculator plugin up to version 1.2.1.
CVE-2024-32550 can allow attackers to exploit Cross-Site Request Forgery to execute stored XSS.