CVE-2024-53727

CVSS 3.1 Score 7.1 of 10 (high)

Details

Published Dec 2, 2024
CWE ID 352

Summary

CVE-2024-53727 is a newly disclosed Cross-Site Request Forgery (CSRF) vulnerability that affects LinkLaunder SEO, a popular search engine optimization tool. This issue allows an attacker to execute malicious actions on a victim's behalf, potentially leading to unauthorized changes or data theft. Additionally, the tool contains a Stored Cross-Site Scripting (XSS) vulnerability, which can be used to inject malicious code into a website, posing a further security risk. The affected version range is from n/a to 0.92.1. Users are strongly encouraged to update to a patched version as soon as possible to mitigate these risks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share