CVE-2023-47789: WordPress WooCommerce Canada Post Shipping Plugin <= 2.8.3 is vulnerable to Cross Site Request Forgery (CSRF)
Published Dec 18, 2023
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in WooCommerce Canada Post Shipping Method.This issue affects Canada Post Shipping Method: from n/a through 2.8.3.
Affected Software
1 affected component
Automattic Canada Post Shipping Method Wordpress<2.8.4
Remediation
Information
Update to 2.8.4 or a higher version.
Event History
Dec 18, 2023
CVE Published
via MITRE·03:43 PM
Data Sourced
via MITRE·03:43 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-47789?
CVE-2023-47789 is classified as a moderate severity Cross-Site Request Forgery (CSRF) vulnerability.
2
How do I fix CVE-2023-47789?
To fix CVE-2023-47789, update the Canada Post Shipping Method plugin to version 2.8.4 or higher.
3
Which versions are affected by CVE-2023-47789?
CVE-2023-47789 affects versions of the Canada Post Shipping Method plugin from any version up to 2.8.3.
4
What type of vulnerability is CVE-2023-47789?
CVE-2023-47789 is a Cross-Site Request Forgery (CSRF) vulnerability.
5
Who is affected by CVE-2023-47789?
Users of the Canada Post Shipping Method plugin for WooCommerce who are using versions up to 2.8.3 are affected by CVE-2023-47789.