The Smart Image Gallery WordPress plugin before 1.0.19 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 15 May 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Codepeople
Codepeople smart Image Gallery |
|
| Weaknesses | CWE-352 | |
| CPEs | cpe:2.3:a:codepeople:smart_image_gallery:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Codepeople
Codepeople smart Image Gallery |
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2024-08-01T20:20:00.487Z
Reserved: 2024-04-10T19:21:05.307Z
Link: CVE-2024-3632
Updated: 2024-08-01T20:20:00.487Z
Status : Analyzed
Published: 2024-07-13T06:15:02.617
Modified: 2025-05-15T18:33:22.770
Link: CVE-2024-3632
No data.
OpenCVE Enrichment
No data.
Weaknesses