CVE-2023-37972: WordPress WooCommerce Product Stock Alert Plugin <= 2.0.1 is vulnerable to Sensitive Data Exposure
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in MultiVendorX Product Stock Manager & Notifier for WooCommerce.This issue affects Product Stock Manager & Notifier for WooCommerce: from n/a through 2.0.1.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2023-37972?
CVE-2023-37972 is a vulnerability in the WordPress WooCommerce Product Stock Alert Plugin that allows sensitive data to be exposed to unauthorized actors.
How severe is the CVE-2023-37972 vulnerability?
The severity of CVE-2023-37972 is high with a CVSS score of 7.5.
What software versions are affected by CVE-2023-37972?
Product Stock Manager & Notifier for WooCommerce versions up to and including 2.0.1 are affected by CVE-2023-37972.
How can I fix CVE-2023-37972?
Update Product Stock Manager & Notifier for WooCommerce to version 2.0.2 or later to fix CVE-2023-37972.
Is there more information available about CVE-2023-37972?
Yes, you can find more information about CVE-2023-37972 at the following reference: [link](https://patchstack.com/database/vulnerability/woocommerce-product-stock-alert/wordpress-woocommerce-product-stock-alert-plugin-2-0-1-sensitive-data-exposure-vulnerability?_s_id=cve)