First published: Fri May 10 2024(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in Kiboko Labs Arigato Autoresponder and Newsletter.This issue affects Arigato Autoresponder and Newsletter: from n/a through 2.7.2.3.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
gwa Autoresponder Project | <=2.7.2.3 | |
Bob Arigato Autoresponder and Newsletter | <=2.7.2.3 |
Update to 2.7.2.4 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-34823 is classified as a Cross-Site Request Forgery (CSRF) vulnerability affecting Kiboko Labs Arigato Autoresponder and Newsletter.
To fix CVE-2024-34823, update Kiboko Labs Arigato Autoresponder and Newsletter to the latest version beyond 2.7.2.3.
CVE-2024-34823 affects all versions of Kiboko Labs Arigato Autoresponder and Newsletter from its initial release up to and including version 2.7.2.3.
CVE-2024-34823 can allow attackers to perform unauthorized actions on behalf of legitimate users through CSRF.
Users of Kiboko Labs Arigato Autoresponder and Newsletter versions up to 2.7.2.3 are impacted by CVE-2024-34823.