CVE-2023-41874: WordPress Order Delivery Date for WooCommerce Plugin <= 3.20.0 is vulnerable to Cross Site Scripting (XSS)
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Tyche Softwares Order Delivery Date for WooCommerce plugin <= 3.20.0 versions.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the vulnerability ID for this XSS vulnerability in Tyche Softwares Order Delivery Date for WooCommerce plugin?
The vulnerability ID for this XSS vulnerability in Tyche Softwares Order Delivery Date for WooCommerce plugin is CVE-2023-41874.
What is the severity level of CVE-2023-41874?
The severity level of CVE-2023-41874 is high with a CVSS score of 6.1.
What is the affected software for CVE-2023-41874?
The affected software for CVE-2023-41874 is Tyche Softwares Order Delivery Date for WooCommerce plugin version up to and including 3.20.0.
How can I fix the XSS vulnerability in Tyche Softwares Order Delivery Date for WooCommerce plugin?
To fix the XSS vulnerability in Tyche Softwares Order Delivery Date for WooCommerce plugin, update to version 3.20.1 or later.
Where can I find more information about CVE-2023-41874?
You can find more information about CVE-2023-41874 at [this link](https://patchstack.com/database/vulnerability/order-delivery-date-for-woocommerce/wordpress-order-delivery-date-for-woocommerce-plugin-3-20-0-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve).