First published: Tue Oct 10 2023(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in Ashok Rane Order Delivery Date for WP e-Commerce plugin <= 1.2 versions.
Credit: audit@patchstack.com audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Tychesoftwares Order Delivery Date For Woocommerce | <=1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-41858 is a Cross-Site Request Forgery (CSRF) vulnerability in the Ashok Rane Order Delivery Date for WP e-Commerce plugin version 1.2 and below.
CVE-2023-41858 has a severity rating of 8.8 (high).
The Ashok Rane Order Delivery Date for WP e-Commerce plugin versions up to and including 1.2 are affected by CVE-2023-41858.
Cross-Site Request Forgery (CSRF) is a type of attack that tricks the victim into performing unwanted actions on a website they trust.
To fix CVE-2023-41858, update the Ashok Rane Order Delivery Date for WP e-Commerce plugin to a version above 1.2.