CVE-2022-44633: WordPress YITH WooCommerce Gift Cards Premium plugin <= 3.23.1 - Unauth. Gift Card Creation Leading to Stored XSS vulnerability
Missing Authorization vulnerability in YITH YITH WooCommerce Gift Cards Premium.This issue affects YITH WooCommerce Gift Cards Premium: from n/a through 3.23.1.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2022-44633?
CVE-2022-44633 is classified as a missing authorization vulnerability that can lead to unauthorized actions within the YITH WooCommerce Gift Cards Premium plugin.
How do I fix CVE-2022-44633?
To fix CVE-2022-44633, update the YITH WooCommerce Gift Cards Premium plugin to version 3.23.2 or later.
What versions are affected by CVE-2022-44633?
CVE-2022-44633 affects YITH WooCommerce Gift Cards Premium versions up to and including 3.23.1.
What are the potential risks of CVE-2022-44633?
The potential risks of CVE-2022-44633 include unauthorized gift card creation, which can lead to financial loss or exploitation.
Is there a workaround for CVE-2022-44633 before updating?
Currently, there is no specific workaround for CVE-2022-44633 other than updating to the patched version.