First published: Thu Dec 21 2023(Updated: )
Authorization Bypass Through User-Controlled Key vulnerability in WooCommerce Shipping Multiple Addresses.This issue affects Shipping Multiple Addresses: from n/a through 3.8.3.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Woocommerce Multiple Customer Addresses & Shipping | <=3.8.3 |
Update to 3.8.4 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-32799 has been classified as a high severity vulnerability due to its potential for unauthorized access.
To remediate CVE-2023-32799, update the WooCommerce Shipping Multiple Addresses plugin to version 3.8.4 or later.
CVE-2023-32799 affects all versions of the WooCommerce Shipping Multiple Addresses plugin up to and including version 3.8.3.
CVE-2023-32799 allows attackers to bypass authorization controls, potentially accessing sensitive user data.
CVE-2023-32799 was officially reported in 2023, highlighting a critical vulnerability in the WooCommerce Shipping Multiple Addresses plugin.