NA

CVE-2022-4426

Published: 09/01/2023 Updated: 07/11/2023
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

The Mautic Integration for WooCommerce WordPress plugin prior to 1.0.3 does not have proper CSRF check when updating settings, and does not ensure that the options to be updated belong to the plugin, allowing malicious users to make a logged in admin change arbitrary blog options via a CSRF attack.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

wpswings mautic integration for woocommerce