WordPress Uncanny Toolkit for LearnDash Plugin <= 3.6.4.1 is vulnerable to Cross Site Request Forgery (CSRF)
CVE-2023-23714
8.8HIGH
What is CVE-2023-23714?
A Cross-Site Request Forgery (CSRF) vulnerability exists in the Uncanny Owl Uncanny Toolkit for LearnDash plugin affecting versions up to 3.6.4.1. This vulnerability can allow an attacker to trick a victim into executing unwanted actions on a web application in which they are authenticated. As a result, this could potentially lead to unauthorized changes or access to sensitive data within the LearnDash environment.
Affected Version(s)
Uncanny Toolkit for LearnDash <= 3.6.4.1