Cross-Site Request Forgery (CSRF) vulnerability in CodeAstrology Team Quantity Plus Minus Button for WooCommerce by CodeAstrology.This issue affects Quantity Plus Minus Button for WooCommerce by CodeAstrology: from n/a through 1.1.9.
References
Configurations
Configuration 1 (hide)
|
History
22 Dec 2023, 09:49
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.8 |
CPE | cpe:2.3:a:codeastrology:quantity_plus_minus_button_for_woocommerce:*:*:*:*:*:wordpress:*:* | |
References | () https://patchstack.com/database/vulnerability/wc-quantity-plus-minus-button/wordpress-quantity-plus-minus-button-for-woocommerce-by-codeastrology-plugin-1-1-9-cross-site-request-forgery-csrf-vulnerability?_s_id=cve - Third Party Advisory |
19 Dec 2023, 13:42
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-12-18 22:15
Updated : 2024-02-05 00:22
NVD link : CVE-2023-48768
Mitre link : CVE-2023-48768
CVE.ORG link : CVE-2023-48768
JSON object : View
Products Affected
codeastrology
- quantity_plus_minus_button_for_woocommerce
CWE
CWE-352
Cross-Site Request Forgery (CSRF)