CVE-2022-41805: WordPress Booster for WooCommerce plugin <= 5.6.6 - Cross-Site Request Forgery (CSRF) vulnerability
Cross-Site Request Forgery (CSRF) vulnerability in Booster for WooCommerce plugin <= 5.6.6 on WordPress.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
WordPress Booster for WooCommerce pluginto a version that resolves this vulnerability.Fixed in 5.6.7
Event History
Frequently Asked Questions
What is CVE-2022-41805?
CVE-2022-41805 is a Cross-Site Request Forgery (CSRF) vulnerability in the Booster for WooCommerce plugin <= 5.6.6 on WordPress.
What is the severity of CVE-2022-41805?
The severity of CVE-2022-41805 is medium with a CVSS score of 4.3.
How does CVE-2022-41805 affect me?
CVE-2022-41805 affects you if you are using the Booster for WooCommerce plugin <= 5.6.6 on WordPress.
How can I fix CVE-2022-41805?
To fix CVE-2022-41805, upgrade your Booster for WooCommerce plugin to version 5.6.7 or higher.
Where can I find more information about CVE-2022-41805?
You can find more information about CVE-2022-41805 at this link: https://patchstack.com/database/vulnerability/woocommerce-jetpack/wordpress-booster-for-woocommerce-plugin-5-6-6-cross-site-request-forgery-csrf-vulnerability?_s_id=cve