Medium severity4.3NVD Advisory· Published May 15, 2025· Updated Jun 17, 2026
CVE-2024-11373
CVE-2024-11373
Description
The Connexion Logs WordPress plugin through 3.0.2 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- cpe:2.3:a:floriansimunek:connexion_logs:*:*:*:*:*:wordpress:*:*Range: <=3.0.2
- WordPress plugin/Connexion Logs plugindescription
<=3.0.2+ 1 more
- (no CPE)range: <=3.0.2
- (no CPE)
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/e9ef847f-3a3f-4030-828b-78db0044e142/nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.