CVE-2023-40561: Enhanced Ecommerce Google Analytics for WooCommerce
Published Oct 4, 2023
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in theDotstore Enhanced Ecommerce Google Analytics for WooCommerce plugin <= 3.7.1 versions.
Affected Software
1 affected component
MULTIDOTS Enhanced Ecommerce Google Analytics For Woocommerce Wordpress<3.7.1
Event History
Oct 4, 2023
CVE Published
via MITRE·01:55 PM
Data Sourced
via MITRE·01:55 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2023-40561?
CVE-2023-40561 is a Cross-Site Request Forgery (CSRF) vulnerability in theDotstore Enhanced Ecommerce Google Analytics for WooCommerce plugin <= 3.7.1 versions.
2
What is the severity of CVE-2023-40561?
CVE-2023-40561 has a severity of 8.8 (High).
3
Which software versions are affected by CVE-2023-40561?
CVE-2023-40561 affects theDotstore Enhanced Ecommerce Google Analytics for WooCommerce plugin versions up to and including 3.7.1.
4
How can I fix CVE-2023-40561?
To fix CVE-2023-40561, update theDotstore Enhanced Ecommerce Google Analytics for WooCommerce plugin to a version beyond 3.7.1.
5
What is the Common Weakness Enumeration (CWE) ID for CVE-2023-40561?
CVE-2023-40561 is associated with CWE-352.