Cross-Site Request Forgery (CSRF) vulnerability in Andrei Ivasiuc Fontific | Google Fonts allows Stored XSS.This issue affects Fontific | Google Fonts: from n/a through 0.1.6.
References
Configurations
History
28 Apr 2026, 19:23
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://patchstack.com/database/vulnerability/fontific/wordpress-fontific-plugin-0-1-6-csrf-to-xss-vulnerability?_s_id=cve - Third Party Advisory | |
| Summary | (en) Cross-Site Request Forgery (CSRF) vulnerability in Andrei Ivasiuc Fontific | Google Fonts allows Stored XSS.This issue affects Fontific | Google Fonts: from n/a through 0.1.6. | |
| First Time |
Andrei Ivasiuc
Andrei Ivasiuc fontific |
|
| CPE | cpe:2.3:a:andrei_ivasiuc:fontific:*:*:*:*:*:wordpress:*:* |
21 Nov 2024, 09:04
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://patchstack.com/database/vulnerability/fontific/wordpress-fontific-plugin-0-1-6-csrf-to-xss-vulnerability?_s_id=cve - |
16 Mar 2024, 02:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-03-16 02:15
Updated : 2026-04-28 19:23
NVD link : CVE-2024-27194
Mitre link : CVE-2024-27194
CVE.ORG link : CVE-2024-27194
JSON object : View
Products Affected
andrei_ivasiuc
- fontific
CWE
CWE-352
Cross-Site Request Forgery (CSRF)
