First published: Thu Nov 30 2023(Updated: )
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in MultiVendorX Product Stock Manager & Notifier for WooCommerce.This issue affects Product Stock Manager & Notifier for WooCommerce: from n/a through 2.0.1.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Multivendorx Product Stock Manager \& Notifier For Woocommerce | <2.0.2 |
Update to 2.0.2 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-37972 is a vulnerability in the WordPress WooCommerce Product Stock Alert Plugin that allows sensitive data to be exposed to unauthorized actors.
The severity of CVE-2023-37972 is high with a CVSS score of 7.5.
Product Stock Manager & Notifier for WooCommerce versions up to and including 2.0.1 are affected by CVE-2023-37972.
Update Product Stock Manager & Notifier for WooCommerce to version 2.0.2 or later to fix CVE-2023-37972.
Yes, you can find more information about CVE-2023-37972 at the following reference: [link](https://patchstack.com/database/vulnerability/woocommerce-product-stock-alert/wordpress-woocommerce-product-stock-alert-plugin-2-0-1-sensitive-data-exposure-vulnerability?_s_id=cve)