ZeroHour

CVE-2022-3603

PoC
CVSS 3.1
9.8 critical
EPSS
1%p63
Published
()
Modified
Description

The Export customers list csv for WooCommerce, WordPress users csv, export Guest customer list WordPress plugin before 2.0.69 does not validate data when outputting it back in a CSV file, which could lead to CSV injection.

Vendors
piwebsolution
Products
export customers list csv for woocommerce
Ecosystems
WordPress, E-commerce
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.