CVE-2022-4363
EUVD-2022-5171316.05.2025, 21:15
The Wholesale Market WordPress plugin before 2.2.2, Wholesale Market for WooCommerce WordPress plugin before 2.0.1 have a flawed CSRF check when updating their settings, which could allow attackers to make a logged in admin update them via a CSRF attack
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| cedcommerce | wholesale_market | 𝑥 < 2.2.2 |
| cedcommerce | wholesale_market_for_woocommerce | 𝑥 < 2.0.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration