Cross-Site Request Forgery Vulnerability in DeBounce Email Validator Plugin for WordPress
CVE-2024-13339
What is CVE-2024-13339?
The DeBounce Email Validator plugin for WordPress possesses a Cross-Site Request Forgery vulnerability due to absent or misconfigured nonce validation on the 'debounce_email_validator' page. This flaw permits unauthenticated attackers to potentially alter settings or insert malicious scripts by tricking an unsuspecting site administrator into executing a harmful action, such as inadvertently clicking a link. This compromise underscores the importance of implementing robust security measures, particularly nonce verification, to protect against unauthorized actions on user accounts.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
DeBounce Email Validator * <= 5.6.6
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved