Uncanny Automator – Automate everything with the #1 automation, integration & webhooks plugin, e060b6e6560d3deb2199fbf637f94070cdbca4af
- CVE, Research URL
- Home page URL
- Application
-
Uncanny Automator – Automate everything with the #1 automation, integration & webhooks plugin
- Published on
- May 25, 2023
- Research Description
- Uncanny Automator – Easy Automation, Integration, Webhooks & Workflow Builder Plugin [uncanny-automator] < 4.15 WordPress Uncanny Automator Plugin < 4.15 is vulnerable to Cross Site Request Forgery (CSRF) Update the WordPress Uncanny Automator plugin to the latest available version (at least 4.15). WordFence discovered and reported this Cross Site Request Forgery (CSRF) vulnerability in WordPress Uncanny Automator Plugin. This could allow a malicious actor to force higher privileged users to execute unwanted actions under their current authentication. This vulnerability has been fixed in version 4.15.
- Affected versions
-
Min -, max 4.15.
- Status
-
vulnerable