CVE-2023-48284: WordPress Decorator – WooCommerce Email Customizer Plugin <= 1.2.7 is vulnerable to Cross Site Request Forgery (CSRF)
Cross-Site Request Forgery (CSRF) vulnerability in WebToffee Decorator – WooCommerce Email Customizer allows Cross Site Request Forgery.This issue affects Decorator – WooCommerce Email Customizer: from n/a through 1.2.7.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2023-48284?
CVE-2023-48284 is a Cross-Site Request Forgery (CSRF) vulnerability in the WebToffee Decorator - WooCommerce Email Customizer plugin.
How does the CVE-2023-48284 vulnerability affect Decorator - WooCommerce Email Customizer?
The CVE-2023-48284 vulnerability allows for Cross-Site Request Forgery attacks in the Decorator - WooCommerce Email Customizer plugin.
How severe is the CVE-2023-48284 vulnerability?
The CVE-2023-48284 vulnerability has a severity rating of 8.8 out of 10.
What software versions are affected by the CVE-2023-48284 vulnerability?
The CVE-2023-48284 vulnerability affects versions up to and including 1.2.7 of the WebToffee Decorator - WooCommerce Email Customizer plugin.
How can I fix the CVE-2023-48284 vulnerability?
To fix the CVE-2023-48284 vulnerability, it is recommended to update the Decorator - WooCommerce Email Customizer plugin to a version higher than 1.2.7.