CVE · High

CVE-2020-13642 — Page Builder by SiteOrigin [siteorigin-panels] < 2.10.16

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2020-13642 Page Builder by SiteOrigin [siteorigin-panels] < 2.10.16 Cross-Site Request Forgery (CSRF) High 8.8 < 2.10.16 2.10.16 2020-05-05

CVE-2020-13642

The Page Builder by SiteOrigin plugin contained a cross-site request forgery vulnerability that could enable attackers to trick authenticated users into performing unintended actions on their accounts. An attacker could exploit this flaw by crafting a malicious request that would execute under the privileges of a targeted user who visits a compromised page. The vulnerability was present in versions prior to 2.10.16, where it has been patched and resolved.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.