CVE-2024-47302: WordPress Fluent Support plugin <= 1.8.0 - Broken Access Control on Email Verification vulnerability
Missing Authorization vulnerability in Shahjahan Jewel Fluent Support fluent-support allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Fluent Support: from n/a through <= 1.8.0.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-47302?
CVE-2024-47302 has been classified as a high severity vulnerability due to the potential for unauthorized access.
How do I fix CVE-2024-47302?
To mitigate CVE-2024-47302, update Fluent Support to version 1.8.1 or later which addresses the missing authorization issue.
What versions are affected by CVE-2024-47302?
CVE-2024-47302 affects Fluent Support versions prior to 1.8.1, specifically from the earliest version through 1.8.0.
What type of vulnerability is CVE-2024-47302?
CVE-2024-47302 is categorized as a missing authorization vulnerability related to incorrect access control configuration.
Who is affected by CVE-2024-47302?
Users of Fluent Support, particularly those using versions up to 1.8.0, are at risk of exploitation due to CVE-2024-47302.