CVE-2023-3547
PoC —CVSS 3.1
8.8 high
EPSS
<1%p32
Published
()
Modified
Description
The All in One B2B for WooCommerce WordPress plugin through 1.0.3 does not properly check nonce values in several actions, allowing an attacker to perform CSRF attacks.
- Vendors
- all in one b2b for woocommerce project
- Products
- all in one b2b for woocommerce
- Ecosystems
- WordPress, E-commerce
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.