Vulnerability Description
Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in YetAnotherStarsRating.Com YASR – Yet Another Star Rating Plugin for WordPress.This issue affects YASR – Yet Another Star Rating Plugin for WordPress: from n/a through 3.3.8.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Yet Another Stars Rating Project | Yet Another Stars Rating | < 3.3.9 |
Related Weaknesses (CWE)
References
- https://patchstack.com/database/vulnerability/yet-another-stars-rating/wordpressThird Party Advisory
- https://patchstack.com/database/vulnerability/yet-another-stars-rating/wordpressThird Party Advisory
FAQ
What is CVE-2023-37867?
CVE-2023-37867 is a vulnerability with a CVSS score of 3.7 (LOW). Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in YetAnotherStarsRating.Com YASR – Yet Another Star Rating Plugin for WordPress.This issue affects YASR – Yet Another Star Rating Plugi...
How severe is CVE-2023-37867?
CVE-2023-37867 has been rated LOW with a CVSS base score of 3.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-37867?
Check the references section above for vendor advisories and patch information. Affected products include: Yet Another Stars Rating Project Yet Another Stars Rating.