2024-09-02 10:03:18 +00:00

29 lines
960 B
JSON

{
"id": "CVE-2024-45270",
"sourceIdentifier": "vultures@jpcert.or.jp",
"published": "2024-09-02T00:15:11.767",
"lastModified": "2024-09-02T00:15:11.767",
"vulnStatus": "Received",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "WordPress plugin \"Carousel Slider\" provided by Sayful Islam contains a cross-site request forgery vulnerability on Hero image selection feature. While logged in to the WordPress site with Carousel Slider plugin enabled, accessing a crafted page may cause a user to alter the contents of the WordPress site."
}
],
"metrics": {},
"references": [
{
"url": "https://github.com/sayful1/carousel-slider",
"source": "vultures@jpcert.or.jp"
},
{
"url": "https://jvn.jp/en/jp/JVN25264194/",
"source": "vultures@jpcert.or.jp"
},
{
"url": "https://wordpress.org/plugins/carousel-slider/",
"source": "vultures@jpcert.or.jp"
}
]
}