CVE-2023-23719
CVSS 3.1 Score 8.8 of 10 (high)
Details
Published Jul 17, 2023
Updated: Jul 26, 2023
CWE ID 352
Summary
CVE-2023-23719 is a Cross-Site Request Forgery (CSRF) vulnerability affecting versions 1.3.17 and below of the Premmerce plugin. A successful exploit of this vulnerability allows attackers to force unintended actions from a user already authenticated on a web application, potentially leading to data modification or unauthorized privileges. Users are urged to update to the latest plugin version to mitigate this risk. Failure to do so may result in security breaches and unauthorized access to sensitive information.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share