← voltar
CVE-2023-5348

Product Catalog Enquiry for WooCommerce < 5.0.3 - Unauthenticated Stored XSS via Arbitrary Setting Update

EPSS 0.5%
The Product Catalog Mode For WooCommerce WordPress plugin before 5.0.3 does not properly authorize settings updates or escape settings values, leading to stored XSS by unauthenticated users.

Quer saber se a sua infraestrutura está exposta a isto?

Falar com a TrueHacking →