CVE-2024-32957: WordPress Page Builder: Live Composer plugin <= 1.5.38 - Broken Access Control vulnerability
Published Apr 26, 2024
·Updated
Missing Authorization vulnerability in Live Composer Team Page Builder: Live Composer.This issue affects Page Builder: Live Composer: from n/a through 1.5.38.
Affected Software
1 affected component
Live Composer Page Builder: Live Composer<=1.5.38
Remediation
Information
Update to 1.5.39 or a higher version.
Event History
Apr 26, 2024
CVE Published
via MITRE·10:58 AM
Data Sourced
via MITRE·10:58 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·11:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-32957?
The severity of CVE-2024-32957 is classified as a Missing Authorization vulnerability.
2
How do I fix CVE-2024-32957?
To fix CVE-2024-32957, you should update the Live Composer Page Builder to version 1.5.39 or later.
3
What versions are affected by CVE-2024-32957?
CVE-2024-32957 affects Live Composer Page Builder versions up to and including 1.5.38.
4
What is the impact of CVE-2024-32957?
The impact of CVE-2024-32957 is that it can allow unauthorized access to certain functionalities within the Page Builder.
5
Who should be concerned about CVE-2024-32957?
Users and administrators of the affected version of Live Composer Page Builder should be concerned about CVE-2024-32957.