CVE Published: 25/03/2024 |
CVE Updated: 27/08/2024 |
CVE Year: 2024 Source: jpcert |
Vendor: Ari Susanto |
Product: easy-popup-show Status : PUBLISHED
CVE-2024-29009 Description
Cross-site request forgery (CSRF) vulnerability in easy-popup-show all versions allows a remote unauthenticated attacker to hijack the authentication of the administrator and to perform unintended operations if the administrator views a malicious page while logged in.