CVE-2024-34806: WordPress Clearfy Cache plugin <= 2.2.1 - Cross Site Request Forgery (CSRF) vulnerability
Published May 17, 2024
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in Creative Motion Clearfy Cache.This issue affects Clearfy Cache: from n/a through 2.2.1.
Affected Software
2 affected components
Creative Motion Clearfy Cache<=2.2.1
WordPress Clearfy Cache<=2.2.1
Event History
May 17, 2024
CVE Published
via MITRE·09:48 AM
Data Sourced
via MITRE·09:48 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-34806?
CVE-2024-34806 is classified as a high-severity Cross-Site Request Forgery (CSRF) vulnerability.
2
How do I fix CVE-2024-34806?
To fix CVE-2024-34806, update the Creative Motion Clearfy Cache plugin to version 2.2.2 or later.
3
Which versions of Clearfy Cache are affected by CVE-2024-34806?
CVE-2024-34806 affects all versions of Clearfy Cache up to and including 2.2.1.
4
What type of vulnerability is CVE-2024-34806?
CVE-2024-34806 is a Cross-Site Request Forgery (CSRF) vulnerability.
5
Who is impacted by CVE-2024-34806?
Users of the Creative Motion Clearfy Cache plugin prior to version 2.2.2 are impacted by CVE-2024-34806.