WordPress CodeBard's Patron Button and Widgets for Patreon Plugin <= 2.1.9 is vulnerable to Cross Site Request Forgery (CSRF)
CVE-2023-47765
8.8HIGH
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 22 November 2023
What is CVE-2023-47765?
A Cross-Site Request Forgery (CSRF) vulnerability exists in CodeBard's Patron Button and Widgets for Patreon plugin in versions up to 2.1.9. Attackers can exploit this vulnerability to perform unauthorized actions on behalf of authenticated users, potentially leading to malicious activities without user consent. This could compromise user data and application integrity, placing both users and the platform at risk.
Affected Version(s)
CodeBard's Patron Button and Widgets for Patreon <= 2.1.9