Vulnerability Description
The Optimize images ALT Text & names for SEO using AI WordPress plugin before 2.0.8 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged-in admin change them via a CSRF attack.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Imageseo | Optimize Images Alt Text \(Alt Tag\) \& Names For Seo Using Ai | < 2.0.8 |
Related Weaknesses (CWE)
References
- https://wpscan.com/vulnerability/0ff435bc-ea20-4993-98ae-1f61b1732b59ExploitThird Party Advisory
- https://wpscan.com/vulnerability/0ff435bc-ea20-4993-98ae-1f61b1732b59ExploitThird Party Advisory
FAQ
What is CVE-2022-4548?
CVE-2022-4548 is a vulnerability with a CVSS score of 6.5 (MEDIUM). The Optimize images ALT Text & names for SEO using AI WordPress plugin before 2.0.8 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged-in admin ...
How severe is CVE-2022-4548?
CVE-2022-4548 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-4548?
Check the references section above for vendor advisories and patch information. Affected products include: Imageseo Optimize Images Alt Text \(Alt Tag\) \& Names For Seo Using Ai.