Cross-Site Request Forgery (CSRF) vulnerability in Lucian Apostol Auto Affiliate Links allows Stored XSS.This issue affects Auto Affiliate Links: from n/a through 6.4.2.4.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-51751 | Cross-Site Request Forgery (CSRF) vulnerability in Lucian Apostol Auto Affiliate Links allows Stored XSS.This issue affects Auto Affiliate Links: from n/a through 6.4.2.4. |
Fixes
Solution
Update to 6.4.2.5 or a higher version.
Workaround
No workaround given by the vendor.
References
History
Tue, 28 Apr 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Cross-Site Request Forgery (CSRF) vulnerability in Lucian Apostol Auto Affiliate Links allows Stored XSS.This issue affects Auto Affiliate Links: from n/a through 6.4.2.4. | Cross-Site Request Forgery (CSRF) vulnerability in Lucian Apostol Auto Affiliate Links allows Stored XSS.This issue affects Auto Affiliate Links: from n/a through 6.4.2.4. |
Thu, 20 Mar 2025 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Flamescorpion
Flamescorpion auto Affiliate Links |
|
| CPEs | cpe:2.3:a:flamescorpion:auto_affiliate_links:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Autoaffiliatelinks
Autoaffiliatelinks auto Affiliate Links |
Flamescorpion
Flamescorpion auto Affiliate Links |
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-04-28T16:08:50.153Z
Reserved: 2023-11-07T17:36:14.651Z
Link: CVE-2023-47652
Updated: 2024-08-02T21:16:42.854Z
Status : Modified
Published: 2023-11-13T04:15:08.497
Modified: 2026-04-28T19:21:56.300
Link: CVE-2023-47652
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD