Cross-Site Request Forgery (CSRF) vulnerability leading...
High severity
Unreviewed
Published
Dec 21, 2021
to the GitHub Advisory Database
•
Updated Feb 1, 2023
Description
Published by the National Vulnerability Database
Dec 20, 2021
Published to the GitHub Advisory Database
Dec 21, 2021
Last updated
Feb 1, 2023
Cross-Site Request Forgery (CSRF) vulnerability leading to Cross-Site Scripting (XSS) discovered in tarteaucitron.js – Cookies legislation & GDPR WordPress plugin (versions <= 1.5.4), vulnerable parameters "tarteaucitronEmail" and "tarteaucitronPass".
References