CVE-2024-29009
Severity CVSS v4.0:
Pending analysis
Type:
CWE-352
Cross-Site Request Forgery (CSRF)
Publication date:
25/03/2024
Last modified:
27/08/2024
Description
Cross-site request forgery (CSRF) vulnerability in easy-popup-show all versions allows a remote unauthenticated attacker to hijack the authentication of the administrator and to perform unintended operations if the administrator views a malicious page while logged in.
Impact
Base Score 3.x
6.10
Severity 3.x
MEDIUM



