CVE-2024-43116: 10up Simple Local Avatars

High severity, CVSS 8.8. EPSS: 0.2% chance of exploitation in the next 30 days.

Cross-Site Request Forgery (CSRF) vulnerability in 10up Simple Local Avatars.This issue affects Simple Local Avatars: from n/a through 2.7.10.

Affected products

  • 10up Simple Local Avatars: before 2.7.11 (fixed in 2.7.11)

Published 2024-08-26. Last modified 2026-06-17.