CVE-2024-10813

The Product Table for WooCommerce by CodeAstrology (wooproducttable.com) plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.5.1 via the var_dump_table parameter. This makes it possible for unauthenticated attackers var data.
Configurations

Configuration 1 (hide)

cpe:2.3:a:codeastrology:woo_product_table:*:*:*:*:*:wordpress:*:*

History

12 Jul 2025, 00:45

Type Values Removed Values Added
References () https://plugins.trac.wordpress.org/browser/woo-product-table/trunk/inc/shortcode-base.php - () https://plugins.trac.wordpress.org/browser/woo-product-table/trunk/inc/shortcode-base.php - Product
References () https://www.wordfence.com/threat-intel/vulnerabilities/id/e67f680a-8942-45fa-8458-a27c78045aa1?source=cve - () https://www.wordfence.com/threat-intel/vulnerabilities/id/e67f680a-8942-45fa-8458-a27c78045aa1?source=cve - Third Party Advisory
CPE cpe:2.3:a:codeastrology:woo_product_table:*:*:*:*:*:wordpress:*:*
First Time Codeastrology woo Product Table
Codeastrology
Summary
  • (es) El complemento Product Table for WooCommerce de CodeAstrology (wooproducttable.com) para WordPress es vulnerable a la exposición de información confidencial en todas las versiones hasta la 3.5.1 incluida a través del parámetro var_dump_table. Esto permite que atacantes no autenticados accedan a los datos de var.

23 Nov 2024, 04:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-23 04:15

Updated : 2025-07-12 00:45


NVD link : CVE-2024-10813

Mitre link : CVE-2024-10813

CVE.ORG link : CVE-2024-10813


JSON object : View

Products Affected

codeastrology

  • woo_product_table
CWE
CWE-862

Missing Authorization