CVE-2026-24597: WordPress Organization chart plugin <= 1.7.5 - Cross Site Request Forgery (CSRF) vulnerability
Published May 25, 2026
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in WpDevArt Organization chart allows Cross Site Request Forgery. This issue affects Organization chart: from n/a through 1.7.5.
Affected Software
1 affected component
WpDevArt WpDevArt Organization chart<=1.7.5
Remediation
Information
Update the WordPress Organization chart Plugin to the latest available version (at least 1.7.6).
Event History
May 25, 2026
CVE Published
via MITRE·09:05 PM
Data Sourced
via MITRE·09:05 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-24597?
CVE-2026-24597 has a medium severity rating of 4.3.
2
What kind of vulnerability is CVE-2026-24597?
CVE-2026-24597 is a Cross Site Request Forgery (CSRF) vulnerability.
3
How do I fix CVE-2026-24597?
To fix CVE-2026-24597, update the WordPress Organization chart plugin to at least version 1.7.6.
4
Which versions are affected by CVE-2026-24597?
CVE-2026-24597 affects all versions of the WordPress Organization chart plugin up to and including 1.7.5.
5
What are the consequences of CVE-2026-24597?
The consequences of CVE-2026-24597 include potential unauthorized actions performed on behalf of the user due to CSRF.