File tree Expand file tree Collapse file tree
advisories/unreviewed/2026/09/GHSA-f746-2pfg-cwp9 Expand file tree Collapse file tree Original file line number Diff line number Diff line change 1+ {
2+ "schema_version" : " 1.4.0" ,
3+ "id" : " GHSA-f746-2pfg-cwp9" ,
4+ "modified" : " 2026-09-25T09:31:04Z" ,
5+ "published" : " 2026-09-25T09:31:04Z" ,
6+ "aliases" : [
7+ " CVE-2026-62062"
8+ ],
9+ "details" : " Cross-Site Request Forgery (CSRF) vulnerability in Elementor Website Builder allows Cross Site Request Forgery.\n\n This issue affects Elementor Website Builder: from n/a through 4.3.1." ,
10+ "severity" : [
11+ {
12+ "type" : " CVSS_V3" ,
13+ "score" : " CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"
14+ }
15+ ],
16+ "affected" : [],
17+ "references" : [
18+ {
19+ "type" : " ADVISORY" ,
20+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2026-62062"
21+ },
22+ {
23+ "type" : " WEB" ,
24+ "url" : " https://patchstack.com/database/wordpress/plugin/elementor/vulnerability/wordpress-elementor-website-builder-plugin-4-3-1-cross-site-request-forgery-csrf-vulnerability?_s_id=cve"
25+ }
26+ ],
27+ "database_specific" : {
28+ "cwe_ids" : [
29+ " CWE-352"
30+ ],
31+ "severity" : " HIGH" ,
32+ "github_reviewed" : false ,
33+ "github_reviewed_at" : null ,
34+ "nvd_published_at" : " 2026-09-25T07:16:54Z"
35+ }
36+ }
You can’t perform that action at this time.
0 commit comments