CVE-2023-6625
22.01.2024, 20:15
The Product Enquiry for WooCommerce WordPress plugin before 3.1 does not have a CSRF check in place when deleting inquiries, which could allow attackers to make a logged in admin delete them via a CSRF attack
Vendor | Product | Version |
---|---|---|
gravitymaster | product_enquiry_for_woocommerce | 𝑥 < 3.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration