CVE-2024-35689: WordPress Analytify plugin <= 5.2.3 - Cross Site Request Forgery (CSRF) vulnerability
Published Jun 8, 2024
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in Analytify.This issue affects Analytify: from n/a through 5.2.3.
Affected Software
1 affected component
Analytify Analytify - Google Analytics Dashboard Wordpress<5.2.4
Remediation
Information
Update to 5.2.4 or a higher version.
Event History
Jun 8, 2024
CVE Published
via MITRE·02:39 PM
Data Sourced
via MITRE·02:39 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-35689?
The severity of CVE-2024-35689 is classified as medium due to its potential for damaging effects through Cross-Site Request Forgery (CSRF).
2
How do I fix CVE-2024-35689?
To fix CVE-2024-35689, update the Analytify plugin to version 5.2.4 or later.
3
What versions of Analytify are affected by CVE-2024-35689?
CVE-2024-35689 affects Analytify versions from n/a through 5.2.3.
4
What kind of vulnerability is CVE-2024-35689?
CVE-2024-35689 is a Cross-Site Request Forgery (CSRF) vulnerability that can allow unauthorized actions on behalf of users.
5
Is CVE-2024-35689 specific to any particular platform?
Yes, CVE-2024-35689 specifically affects the Analytify plugin used with WordPress.