{ "id": "CVE-2024-29009", "sourceIdentifier": "vultures@jpcert.or.jp", "published": "2024-03-25T05:15:50.913", "lastModified": "2024-03-25T13:47:14.087", "vulnStatus": "Awaiting Analysis", "descriptions": [ { "lang": "en", "value": "Cross-site request forgery (CSRF) vulnerability in easy-popup-show all versions allows a remote unauthenticated attacker to hijack the authentication of the administrator and to perform unintended operations if the administrator views a malicious page while logged in." }, { "lang": "es", "value": "La vulnerabilidad de Cross-Site Request Forgery (CSRF) en easy-popup-show todas las versiones permite a un atacante remoto no autenticado secuestrar la autenticaci\u00f3n del administrador y realizar operaciones no deseadas si el administrador ve una p\u00e1gina maliciosa mientras est\u00e1 conectado." } ], "metrics": {}, "references": [ { "url": "https://jvn.jp/en/jp/JVN86206017/", "source": "vultures@jpcert.or.jp" }, { "url": "https://wordpress.org/plugins/easy-popup-show/", "source": "vultures@jpcert.or.jp" } ] }