PT-2024-26224 · WordPress · Translatepress

Dhabaleshwar Das

·

Published

2024-05-10

·

Updated

2024-07-06

·

CVE-2024-34827

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions TranslatePress versions 2.7.5 and earlier
Description The issue is a Cross-Site Request Forgery (CSRF) vulnerability. This means an attacker can trick a user into performing unintended actions on a web application. The estimated number of potentially affected devices is not specified.
Recommendations For versions 2.7.5 and earlier, update the plugin to the latest version and monitor for suspicious activity.

Fix

CSRF

Weakness Enumeration

Related Identifiers

CVE-2024-34827

Affected Products

Translatepress