Medium severity4.3NVD Advisory· Published Jun 8, 2024· Updated Apr 23, 2026
CVE-2024-35684
CVE-2024-35684
Description
Cross-Site Request Forgery (CSRF) vulnerability in 10up ElasticPress elasticpress.This issue affects ElasticPress: from n/a through <= 5.1.1.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- patchstack.com/database/vulnerability/elasticpress/wordpress-elasticpress-plugin-5-1-0-cross-site-request-forgery-csrf-vulnerabilitynvdThird Party Advisory
- patchstack.com/database/Wordpress/Plugin/elasticpress/vulnerability/wordpress-elasticpress-plugin-5-1-0-cross-site-request-forgery-csrf-vulnerabilitynvd
News mentions
0No linked articles in our index yet.