Description
WordPress Plugin Yoast SEO is prone to a cross-site request forgery vulnerability. Exploiting this issue may allow a remote attacker to perform certain administrative actions and gain unauthorized access to the affected application; other attacks are also possible. WordPress Plugin Yoast SEO version 3.3.1 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 3.3.2 or latest
References
Related Vulnerabilities
Jenkins Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-2600)
Internet Information Services Other Vulnerability (CVE-2001-1243)
WordPress Plugin Display Users SQL Injection (2.0.0)
WordPress Plugin BackWPup Unspecified Vulnerability (3.4.3)
WordPress Use of Insufficiently Random Values Vulnerability (CVE-2017-17091)