CVE-2024-37426: WordPress Elegant Pink theme 1.3.0 - Cross Site Request Forgery (CSRF) vulnerability
Published Jan 2, 2025
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in raratheme Elegant Pink elegant-pink allows Cross Site Request Forgery.This issue affects Elegant Pink: from n/a through <= 1.3.0.
Affected Software
3 affected components
Rara Elegant Pink>=1.3.0
WordPress Elegant Pink<=1.3.0
Rarathemes Elegant Pink Wordpress<1.3.1
Remediation
Information
Update the WordPress Elegant Pink theme to the latest available version (at least 1.3.1).
Event History
Jan 2, 2025
CVE Published
via MITRE·12:00 PM
Data Sourced
via MITRE·12:00 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·12:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-37426?
CVE-2024-37426 is classified as a Cross-Site Request Forgery (CSRF) vulnerability.
2
How do I fix CVE-2024-37426?
To fix CVE-2024-37426, update the Rara Elegant Pink theme to a version later than 1.3.0.
3
Which versions are affected by CVE-2024-37426?
CVE-2024-37426 affects Rara Elegant Pink theme versions from n/a through 1.3.0.
4
Can CVE-2024-37426 affect my WordPress site?
Yes, CVE-2024-37426 can affect WordPress sites using the Elegant Pink theme up to version 1.3.0.
5
What type of attack does CVE-2024-37426 enable?
CVE-2024-37426 enables Cross-Site Request Forgery (CSRF) attacks.