CVE-2024-37413: WordPress Preschool and Kindergarten theme <= 1.2.1 - Cross Site Request Forgery (CSRF) vulnerability
Cross-Site Request Forgery (CSRF) vulnerability in raratheme Preschool and Kindergarten preschool-and-kindergarten allows Cross Site Request Forgery.This issue affects Preschool and Kindergarten: from n/a through <= 1.2.1.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-37413?
CVE-2024-37413 is classified as a Cross-Site Request Forgery (CSRF) vulnerability, which can allow unauthorized actions on behalf of users.
How do I fix CVE-2024-37413?
To fix CVE-2024-37413, update the Rara Theme Preschool and Kindergarten to version 1.2.2 or later.
What versions are affected by CVE-2024-37413?
CVE-2024-37413 affects Rara Theme Preschool and Kindergarten versions up to and including 1.2.1.
What kind of attacks are possible with CVE-2024-37413?
CVE-2024-37413 could allow attackers to perform unauthorized actions on a user's behalf without their consent.
Is CVE-2024-37413 exploitable without user interaction?
Yes, CVE-2024-37413 can be exploited through social engineering tactics that trick users into clicking on malicious links.