CVE-2023-32802: WordPress WooCommerce Pre-Orders Plugin <= 1.9.0 is vulnerable to Cross Site Scripting (XSS)
Published Aug 30, 2023
·Updated
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in WooCommerce WooCommerce Pre-Orders plugin <= 1.9.0 versions.
Affected Software
1 affected component
WooCommerce WooCommerce Pre-Orders WordPress<=1.9.0
Remediation
Information
Update to 2.0.0 or a higher version.
Event History
Aug 30, 2023
CVE Published
via MITRE·11:29 AM
Data Sourced
via MITRE·11:29 AM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-32802?
The severity of CVE-2023-32802 is high.
2
What is the affected software for CVE-2023-32802?
The affected software for CVE-2023-32802 is WooCommerce WooCommerce Pre-Orders plugin version 1.9.0 and below.
3
What is the CVE ID for the vulnerability?
The CVE ID for the vulnerability is CVE-2023-32802.
4
What is the CWE ID for the vulnerability?
The CWE ID for the vulnerability is CWE-79.
5
How do I fix the CVE-2023-32802 vulnerability?
To fix the CVE-2023-32802 vulnerability, update to the latest version of the WooCommerce Pre-Orders plugin.