CVE-2024-37435: WordPress Perfect Portfolio theme <= 1.2.0 - Cross Site Request Forgery (CSRF) vulnerability
Cross-Site Request Forgery (CSRF) vulnerability in raratheme Perfect Portfolio perfect-portfolio allows Cross Site Request Forgery.This issue affects Perfect Portfolio: from n/a through <= 1.2.0.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-37435?
CVE-2024-37435 is classified as a high severity Cross-Site Request Forgery (CSRF) vulnerability affecting Rara Theme Perfect Portfolio.
How do I fix CVE-2024-37435?
To fix CVE-2024-37435, update Rara Theme Perfect Portfolio to version 1.2.1 or later.
What versions are affected by CVE-2024-37435?
CVE-2024-37435 affects Rara Theme Perfect Portfolio versions up to and including 1.2.0.
Who is affected by CVE-2024-37435?
Any user running Rara Theme Perfect Portfolio version 1.2.0 or earlier is susceptible to CVE-2024-37435.
What is Cross-Site Request Forgery in the context of CVE-2024-37435?
In the context of CVE-2024-37435, Cross-Site Request Forgery allows an attacker to trick users into executing unwanted actions on web applications in which they are authenticated.