cleantalk
Vulnerabilities and Security Researches

Uncanny Automator – Automate everything with the #1 automation, integration & webhooks plugin, e060b6e6560d3deb2199fbf637f94070cdbca4af

Published on
May 25, 2023
Research Description
Uncanny Automator &#8211; Easy Automation, Integration, Webhooks &amp; Workflow Builder Plugin [uncanny-automator] < 4.15 WordPress Uncanny Automator Plugin < 4.15 is vulnerable to Cross Site Request Forgery (CSRF) Update the WordPress Uncanny Automator plugin to the latest available version (at least 4.15). WordFence discovered and reported this Cross Site Request Forgery (CSRF) vulnerability in WordPress Uncanny Automator Plugin. This could allow a malicious actor to force higher privileged users to execute unwanted actions under their current authentication. This vulnerability has been fixed in version 4.15.
Affected versions
Min -, max 4.15.
Status
vulnerable