Cross-Site Request Forgery (CSRF) vulnerability in CodeAstrology Team Quantity Plus Minus Button for WooCommerce by CodeAstrology.This issue affects Quantity Plus Minus Button for WooCommerce by CodeAstrology: from n/a through 1.1.9.
References
Configurations
Configuration 1 (hide)
|
History
22 Dec 2023, 09:49
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Codeastrology quantity Plus Minus Button For Woocommerce
Codeastrology |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.8 |
| References | () https://patchstack.com/database/vulnerability/wc-quantity-plus-minus-button/wordpress-quantity-plus-minus-button-for-woocommerce-by-codeastrology-plugin-1-1-9-cross-site-request-forgery-csrf-vulnerability?_s_id=cve - Third Party Advisory | |
| CPE | cpe:2.3:a:codeastrology:quantity_plus_minus_button_for_woocommerce:*:*:*:*:*:wordpress:*:* |
18 Dec 2023, 22:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2023-12-18 22:15
Updated : 2023-12-22 09:49
NVD link : CVE-2023-48768
Mitre link : CVE-2023-48768
JSON object : View
Products Affected
codeastrology
- quantity_plus_minus_button_for_woocommerce
CWE
CWE-352
Cross-Site Request Forgery (CSRF)
