PT-2022-21388 · WordPress · Codeandmore Wp Page Widget

Muhammad Daffa

·

Published

2022-11-08

·

Updated

2022-11-09

·

CVE-2022-32587

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions CodeAndMore WP Page Widget plugin versions prior to 3.9
Description The issue is related to a Cross-Site Request Forgery (CSRF) vulnerability, which can lead to changes in the plugin settings.
Recommendations For CodeAndMore WP Page Widget plugin versions prior to 3.9, update to version 3.9 or later to resolve the issue.

Fix

CSRF

Weakness Enumeration

Related Identifiers

CVE-2022-32587

Affected Products

Codeandmore Wp Page Widget