Cross-Site Request Forgery (CSRF) vulnerability in Get Push Monkey LLC Push Monkey Pro – Web Push Notifications and WooCommerce Abandoned Cart allows Cross Site Request Forgery.This issue affects Push Monkey Pro – Web Push Notifications and WooCommerce Abandoned Cart: from n/a through 3.9.
Metrics
Affected Vendors & Products
References
History
Mon, 16 Dec 2024 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 16 Dec 2024 14:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Cross-Site Request Forgery (CSRF) vulnerability in Get Push Monkey LLC Push Monkey Pro – Web Push Notifications and WooCommerce Abandoned Cart allows Cross Site Request Forgery.This issue affects Push Monkey Pro – Web Push Notifications and WooCommerce Abandoned Cart: from n/a through 3.9. | |
Title | WordPress Push Monkey Pro plugin <= 3.9 - CSRF to Stored XSS vulnerability | |
Weaknesses | CWE-352 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Patchstack
Published: 2024-12-16T14:14:07.722Z
Updated: 2024-12-16T19:55:20.623Z
Reserved: 2024-12-02T12:05:53.484Z
Link: CVE-2024-54386

Updated: 2024-12-16T19:36:20.647Z

Status : Received
Published: 2024-12-16T15:15:12.837
Modified: 2024-12-16T15:15:12.837
Link: CVE-2024-54386

No data.