CVE-2023-4642
CVSS 3.1 Score 8.8 of 10 (high)
Details
Published Nov 27, 2023
Updated: Dec 1, 2023
CWE ID 122
Summary
CVE-2023-4642 is a race condition vulnerability affecting the kk Star Ratings plugin for WordPress before version 5.4.6. This issue allows a user to submit multiple votes on a poll, as the plugin does not employ atomic operations to ensure data consistency. This could potentially skew poll results and undermine the integrity of user feedback on affected websites. Users are advised to update to the latest version of the plugin to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share