First published: Fri May 10 2024(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in WebinarPress.This issue affects WebinarPress: from n/a through 1.33.17.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
WebinarPress | <=1.33.17 | |
WebinarPress | <=1.33.17 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-34818 is classified as a Cross-Site Request Forgery (CSRF) vulnerability that can potentially lead to unauthorized actions on behalf of authenticated users.
To fix CVE-2024-34818, you should update WebinarPress to version 1.33.18 or later as it addresses this vulnerability.
CVE-2024-34818 affects all versions of WebinarPress from n/a up to and including 1.33.17.
The potential impacts of CVE-2024-34818 include unauthorized modifications or actions being performed by attackers leveraging CSRF.
A possible workaround for CVE-2024-34818 is to restrict access to the affected functionality until an update can be applied.