First published: Mon Aug 26 2024(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in WebinarPress allows Cross-Site Scripting (XSS).This issue affects WebinarPress: from n/a through 1.33.20.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Webinarpress Webinarpress Wordpress | <1.33.21 |
Update to 1.33.21 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-43339 is classified as a critical severity vulnerability due to its potential for Cross-Site Request Forgery (CSRF) leading to Cross-Site Scripting (XSS).
To fix CVE-2024-43339, it is recommended to update WebinarPress to version 1.33.21 or later.
CVE-2024-43339 affects all versions of WebinarPress up to and including version 1.33.20.
CVE-2024-43339 can facilitate Cross-Site Request Forgery (CSRF) attacks that may result in Cross-Site Scripting (XSS) vulnerabilities.
Yes, CVE-2024-43339 specifically affects the WebinarPress plugin used on WordPress sites.