CVE · Medium

CVE-2022-47150 — WP Dark Mode – Improve Accessibility with AI Powered Dark Theme [wp-dark-mode] < 3.0.5

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2022-47150 WP Dark Mode – Improve Accessibility with AI Powered Dark Theme [wp-dark-mode] < 3.0.5 Cross-Site Request Forgery (CSRF) Medium 4.3 < 3.0.5 3.0.5 2023-03-21

CVE-2022-47150

The WP Dark Mode plugin before version 3.0.5 contains a cross-site request forgery vulnerability that could allow an attacker to trick authenticated users with higher privileges into performing unintended actions. The flaw was discovered by Lana Codes and has been remedied in version 3.0.5 or later. Users should upgrade to the patched version to eliminate this security risk.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.