CVE-2023-52150

Cross-Site Request Forgery (CSRF) vulnerability in Ovation S.R.L. Dynamic Content for Elementor.This issue affects Dynamic Content for Elementor: from n/a before 2.12.5.
Configurations

Configuration 1 (hide)

cpe:2.3:a:ovation:dynamic_content_for_elementor:*:*:*:*:*:wordpress:*:*

History

21 Nov 2024, 08:39

Type Values Removed Values Added
References () https://patchstack.com/database/vulnerability/dynamic-content-for-elementor/wordpress-dynamic-content-for-elementor-plugin-2-12-5-cross-site-request-forgery-csrf-leading-to-arbitrary-wordpress-options-change-vulnerability?_s_id=cve - Third Party Advisory () https://patchstack.com/database/vulnerability/dynamic-content-for-elementor/wordpress-dynamic-content-for-elementor-plugin-2-12-5-cross-site-request-forgery-csrf-leading-to-arbitrary-wordpress-options-change-vulnerability?_s_id=cve - Third Party Advisory

10 Jan 2024, 19:50

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.8
First Time Ovation
Ovation dynamic Content For Elementor
CPE cpe:2.3:a:ovation:dynamic_content_for_elementor:*:*:*:*:*:wordpress:*:*
CWE CWE-352
References () https://patchstack.com/database/vulnerability/dynamic-content-for-elementor/wordpress-dynamic-content-for-elementor-plugin-2-12-5-cross-site-request-forgery-csrf-leading-to-arbitrary-wordpress-options-change-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/dynamic-content-for-elementor/wordpress-dynamic-content-for-elementor-plugin-2-12-5-cross-site-request-forgery-csrf-leading-to-arbitrary-wordpress-options-change-vulnerability?_s_id=cve - Third Party Advisory

05 Jan 2024, 08:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-01-05 08:15

Updated : 2024-11-21 08:39


NVD link : CVE-2023-52150

Mitre link : CVE-2023-52150

CVE.ORG link : CVE-2023-52150


JSON object : View

Products Affected

ovation

  • dynamic_content_for_elementor
CWE
CWE-352

Cross-Site Request Forgery (CSRF)