CVE-2023-49759: WordPress WooDiscuz – WooCommerce Comments Plugin <= 2.3.0 is vulnerable to Cross Site Request Forgery (CSRF)
Published Dec 18, 2023
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in gVectors Team WooDiscuz – WooCommerce Comments.This issue affects WooDiscuz – WooCommerce Comments: from n/a through 2.3.0.
Affected Software
1 affected component
gVectors Woodiscuz - Woocommerce Comments Wordpress<=2.3.0
Event History
Dec 18, 2023
CVE Published
via MITRE·10:19 PM
Data Sourced
via MITRE·10:19 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·11:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-49759?
CVE-2023-49759 is classified as a medium severity Cross-Site Request Forgery vulnerability.
2
How do I fix CVE-2023-49759?
To mitigate CVE-2023-49759, update WooDiscuz – WooCommerce Comments to a version higher than 2.3.0.
3
What systems are affected by CVE-2023-49759?
CVE-2023-49759 affects WooDiscuz – WooCommerce Comments versions up to 2.3.0.
4
What type of vulnerability is CVE-2023-49759?
CVE-2023-49759 is a Cross-Site Request Forgery (CSRF) vulnerability.
5
Is CVE-2023-49759 being actively exploited?
As of now, there are no reports indicating that CVE-2023-49759 is being actively exploited.