The facebook-for-woocommerce plugin prior to 1.9.15 for WordPress has CSRF via ajax_woo_infobanner_post_click, ajax_woo_infobanner_post_xout, or ajax_fb_toggle_visibility.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
facebook facebook for woocommerce |