First published: Sat Aug 05 2023(Updated: )
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in WooCommerce Shipping Multiple Addresses plugin <= 3.8.5 versions.
Credit: audit@patchstack.com audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Woocommerce Shipping Multiple Addresses | <=3.8.5 |
Update to 3.8.6 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-37873 is high.
CVE-2023-37873 affects WooCommerce Shipping Multiple Addresses plugin versions <= 3.8.5.
The Common Weakness Enumeration (CWE) ID associated with CVE-2023-37873 is CWE-79.
To fix CVE-2023-37873, you should update the WooCommerce Shipping Multiple Addresses plugin to a version higher than 3.8.5.
You can find more information about CVE-2023-37873 at this reference: [link](https://patchstack.com/database/vulnerability/woocommerce-shipping-multiple-addresses/wordpress-woocommerce-ship-to-multiple-addresses-plugin-3-8-5-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve).