WordPress Complianz and Complianz Premium plugins - Cross Site Request Forgery (CSRF)
CVE-2023-34030
8.8HIGH
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 30 November 2023
What is CVE-2023-34030?
A Cross-Site Request Forgery (CSRF) vulnerability exists in the Complianz and Complianz Premium plugins by Really Simple Plugins. This flaw allows attackers to trick users into executing unwanted actions on their behalf without their consent. The vulnerability affects various versions of Complianz and Complianz Premium, specifically those from an unspecified version through to 6.4.5 and 6.4.7, respectively. Organizations using these plugins should prioritize testing and applying updates to mitigate potential security risks.
Affected Version(s)
Complianz <= 6.4.5
Complianz Premium <= 6.4.7