CVE-2024-43265: WordPress Analytify plugin <= 5.3.1 - CSRF Leading to Optout Vulnerability
Published Aug 26, 2024
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in Analytify.This issue affects Analytify: from n/a through 5.3.1.
Affected Software
1 affected component
Analytify Analytify - Google Analytics Dashboard Wordpress<5.4.0
Remediation
Information
Update to 5.4.0 or a higher version.
Event History
Aug 26, 2024
CVE Published
via MITRE·08:49 PM
Data Sourced
via MITRE·08:49 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-43265?
The severity of CVE-2024-43265 is considered medium due to its potential for Cross-Site Request Forgery attacks.
2
How do I fix CVE-2024-43265?
To fix CVE-2024-43265, update the Analytify plugin to version 5.4.0 or higher.
3
What versions are affected by CVE-2024-43265?
CVE-2024-43265 affects Analytify versions from n/a through 5.3.1.
4
What type of vulnerability is CVE-2024-43265?
CVE-2024-43265 is classified as a Cross-Site Request Forgery (CSRF) vulnerability.
5
Is there a workaround for CVE-2024-43265?
There is no known workaround for CVE-2024-43265; updating to a secure version is required.