ZeroHour

CVE-2017-3211

PoC
CVSS 3.1
5.3 medium
EPSS
<1%p55
Published
()
Modified
Description

Yopify, an e-commerce notification plugin, up to April 06, 2017, leaks the first name, last initial, city, and recent purchase data of customers, all without user authorization.

Vendors
yopify
Products
yopify
Weakness
CWE-213, CWE-200
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.