First published: Fri Nov 18 2022(Updated: )
Unauth. Directory Traversal vulnerability in Welcart eCommerce plugin <= 2.7.7 on WordPress.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Collne Welcart | <2.7.8 | |
Welcart Plugin | <2.7.8 |
Update to 2.7.8 or higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2022-41840.
The severity of CVE-2022-41840 is critical with a score of 9.8.
The affected software for CVE-2022-41840 is the Welcart eCommerce plugin version <= 2.7.7 running on WordPress.
CVE-2022-41840 is an Unauthenticated Directory Traversal vulnerability in the Welcart eCommerce plugin version <= 2.7.7 on WordPress.
To fix CVE-2022-41840, update the Welcart eCommerce plugin to version 2.7.8 or later.