First published: Mon Sep 25 2023(Updated: )
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Tyche Softwares Order Delivery Date for WooCommerce plugin <= 3.20.0 versions.
Credit: audit@patchstack.com audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Tychesoftwares Order Delivery Date For Woocommerce | <=3.20.0 |
Update to 3.20.1 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this XSS vulnerability in Tyche Softwares Order Delivery Date for WooCommerce plugin is CVE-2023-41874.
The severity level of CVE-2023-41874 is high with a CVSS score of 6.1.
The affected software for CVE-2023-41874 is Tyche Softwares Order Delivery Date for WooCommerce plugin version up to and including 3.20.0.
To fix the XSS vulnerability in Tyche Softwares Order Delivery Date for WooCommerce plugin, update to version 3.20.1 or later.
You can find more information about CVE-2023-41874 at [this link](https://patchstack.com/database/vulnerability/order-delivery-date-for-woocommerce/wordpress-order-delivery-date-for-woocommerce-plugin-3-20-0-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve).