NA

CVE-2023-6625

Published: 22/01/2024 Updated: 26/01/2024
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

The Product Enquiry for WooCommerce WordPress plugin prior to 3.1 does not have a CSRF check in place when deleting inquiries, which could allow malicious users to make a logged in admin delete them via a CSRF attack

Vulnerable Product Search on Vulmon Subscribe to Product

gravitymaster product enquiry for woocommerce