CVE-2023-49840: WordPress Multi Currency For WooCommerce Plugin <= 1.5.5 is vulnerable to Cross Site Request Forgery (CSRF)
Published Dec 18, 2023
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in Palscode Multi Currency For WooCommerce.This issue affects Multi Currency For WooCommerce: from n/a through 1.5.5.
Affected Software
1 affected component
Palscode Multi Currency For Woocommerce Wordpress<=1.5.5
Event History
Dec 18, 2023
CVE Published
via MITRE·02:46 PM
Data Sourced
via MITRE·02:46 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-49840?
The severity of CVE-2023-49840 is classified as medium due to its potential for Cross-Site Request Forgery (CSRF) attacks.
2
How do I fix CVE-2023-49840?
To fix CVE-2023-49840, update the Palscode Multi Currency For WooCommerce plugin to a version higher than 1.5.5.
3
Which versions are affected by CVE-2023-49840?
CVE-2023-49840 affects Palscode Multi Currency For WooCommerce versions from n/a through 1.5.5.
4
What types of attacks can CVE-2023-49840 lead to?
CVE-2023-49840 can lead to Cross-Site Request Forgery (CSRF) attacks, which may allow unauthorized actions to be performed on behalf of users.
5
Is CVE-2023-49840 related to WooCommerce?
Yes, CVE-2023-49840 is specifically related to the Palscode Multi Currency For WooCommerce plugin.