CVE-2024-34823
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Summary
CVE-2024-34823 is a Cross-Site Request Forgery (CSRF) vulnerability affecting the Kiboko Labs Arigato Autoresponder and Newsletter. This issue, which impacts versions from n/a to 2.7.2.3, allows an attacker to trick a user into making unintended actions on a web application. The attacker can manipulate the user into performing unwanted functions, such as account modifications or data exfiltration, by forging a malicious request on their behalf. This vulnerability poses a significant risk to users and requires immediate attention from Arigato Autoresponder and Newsletter maintainers. It is crucial that affected users upgrade to a patched version as soon as possible to mitigate the risks associated with this issue.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.