First published: Mon Aug 26 2024(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in WPMU DEV Hummingbird.This issue affects Hummingbird: from n/a through 3.9.1.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
WPMU DEV Hummingbird | <3.9.2 |
Update to 3.9.2 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-43117 is classified as a Cross-Site Request Forgery (CSRF) vulnerability.
To mitigate CVE-2024-43117, update the WPMU DEV Hummingbird plugin to version 3.9.2 or later.
CVE-2024-43117 affects Hummingbird versions prior to 3.9.2.
Exploitation of CVE-2024-43117 could allow an attacker to perform unauthorized actions on behalf of authenticated users.
CSRF vulnerabilities like CVE-2024-43117 are relatively common in WordPress plugins that do not implement robust security measures.