CVE-2023-39158: WordPress Woocommerce Category Banner Management Plugin <= 2.4.2 is vulnerable to Cross Site Request Forgery (CSRF)
Cross-Site Request Forgery (CSRF) vulnerability in theDotstore Banner Management For WooCommerce plugin <= 2.4.2 versions.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2023-39158?
CVE-2023-39158 is a Cross-Site Request Forgery (CSRF) vulnerability in theDotstore Banner Management For WooCommerce plugin <= 2.4.2 versions.
How severe is CVE-2023-39158?
CVE-2023-39158 has a severity rating of medium with a score of 6.5.
What software versions are affected by CVE-2023-39158?
TheDotstore Banner Management For WooCommerce plugin versions up to and including 2.4.2 are affected by CVE-2023-39158.
What is Cross-Site Request Forgery (CSRF)?
Cross-Site Request Forgery (CSRF) is an attack that forces an end user to execute unwanted actions on a web application in which they are authenticated.
Is there a fix available for CVE-2023-39158?
Yes, a fix is available for CVE-2023-39158. It is recommended to update theDotstore Banner Management For WooCommerce plugin to version 2.4.3 or later.