CVE-2022-44634: WordPress S2W – Import Shopify to WooCommerce plugin <= 1.1.12 - Auth. Arbitrary File Read vulnerability
Auth. (admin+) Arbitrary File Read vulnerability in S2W – Import Shopify to WooCommerce plugin <= 1.1.12 on WordPress.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
WordPress S2W – Import Shopify to WooCommerce pluginto a version that resolves this vulnerability.Fixed in 1.1.13
Event History
Frequently Asked Questions
What is CVE-2022-44634?
CVE-2022-44634 is an Authentication (admin+) Arbitrary File Read vulnerability in S2W - Import Shopify to WooCommerce plugin <= 1.1.12 on WordPress.
How severe is CVE-2022-44634?
CVE-2022-44634 has a medium severity rating with a CVSS score of 4.9.
Which software version is affected by CVE-2022-44634?
CVE-2022-44634 affects S2W - Import Shopify to WooCommerce plugin version 1.1.12 on WordPress.
How can I fix CVE-2022-44634?
To fix CVE-2022-44634, update to the latest version of S2W - Import Shopify to WooCommerce plugin on WordPress.
Where can I find more information about CVE-2022-44634?
You can find more information about CVE-2022-44634 at the following references: [link1], [link2].