---
id: CVE-2024-24702
title: >-
  Cross-Site Request Forgery (CSRF) vulnerability in Matt Martz & Andy Stratton
  Page Restrict.This issue affects Page Restrict: from n/a through 2.5.5.
summary: >-
  Cross-Site Request Forgery (CSRF) vulnerability in Matt Martz & Andy Stratton
  Page Restrict.This issue affects Page Restrict: from n/a through 2.5.5.
severity: medium
cvss: 4.3
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N'
cwe:
  - CWE-352
vendor: sivel
product: page_restrict
affected:
  - page_restrict <= 2.5.5
published: '2024-02-28'
updated: '2026-09-01'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2024-24702'
references:
  - url: >-
      https://patchstack.com/database/vulnerability/pagerestrict/wordpress-page-restrict-plugin-2-5-5-cross-site-request-forgery-csrf-vulnerability?_s_id=cve
    label: audit@patchstack.com
  - url: >-
      https://patchstack.com/database/vulnerability/pagerestrict/wordpress-page-restrict-plugin-2-5-5-cross-site-request-forgery-csrf-vulnerability?_s_id=cve
    label: af854a3a-2127-422b-91ae-364da2661108
tags:
  - nvd
epss: 0.00227
epssPercentile: 0.13714
ingestedAt: '2026-09-01T13:27:07.063Z'
---

## Overview

Cross-Site Request Forgery (CSRF) vulnerability in Matt Martz & Andy Stratton Page Restrict.This issue affects Page Restrict: from n/a through 2.5.5.

## Affected

- `page_restrict <= 2.5.5`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
