CVE-2024-37237: WordPress FS Poster plugin <= 6.5.8 - Cross Site Request Forgery (CSRF) vulnerability
Published Jan 2, 2025
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in fs-code FS Poster fs-poster allows Cross Site Request Forgery.This issue affects FS Poster: from n/a through <= 6.5.8.
Affected Software
1 affected component
Fs-code FS Poster<=6.5.8
Event History
Jan 2, 2025
CVE Published
via MITRE·01:34 PM
Data Sourced
via MITRE·01:34 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:15 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-37237?
CVE-2024-37237 is classified as a critical Cross-Site Request Forgery (CSRF) vulnerability.
2
How do I fix CVE-2024-37237?
To fix CVE-2024-37237, update FS Poster to version 6.5.9 or later.
3
Which versions of FS Poster are affected by CVE-2024-37237?
CVE-2024-37237 affects FS Poster versions up to and including 6.5.8.
4
Is CVE-2024-37237 a risk for WordPress sites?
Yes, CVE-2024-37237 poses a risk to any WordPress site using the FS Poster plugin version 6.5.8 or earlier.
5
What should I do if I cannot update FS Poster immediately due to CVE-2024-37237?
If immediate updates are not possible, consider disabling the FS Poster plugin until a patch can be applied.