CVE-2022-40194: WordPress Customer Reviews for WooCommerce plugin <= 5.3.5 - Sensitive Information Disclosure vulnerability
Unauthenticated Sensitive Information Disclosure vulnerability in Customer Reviews for WooCommerce plugin <= 5.3.5 at WordPress
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
WordPress Customer Reviews for WooCommerce pluginto a version that resolves this vulnerability.Fixed in 5.3.6
Event History
Frequently Asked Questions
What is the severity of CVE-2022-40194?
CVE-2022-40194 is classified as a medium severity vulnerability.
How do I fix CVE-2022-40194?
To fix CVE-2022-40194, update the Customer Reviews for WooCommerce plugin to version 5.3.6 or higher.
What type of vulnerability is CVE-2022-40194?
CVE-2022-40194 is an unauthenticated sensitive information disclosure vulnerability.
Which versions are affected by CVE-2022-40194?
CVE-2022-40194 affects Customer Reviews for WooCommerce plugin versions up to and including 5.3.5.
Can CVE-2022-40194 lead to data breaches?
Yes, CVE-2022-40194 can potentially lead to unauthorized access to sensitive information, increasing the risk of data breaches.