CVE-2023-52231: WordPress Booster Plus for WooCommerce plugin < 7.1.2 - Auth. Sensitive Data Exposure vulnerability
Published Mar 28, 2024
·Updated
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Booster Booster Plus for WooCommerce.This issue affects Booster Plus for WooCommerce: from n/a before 7.1.2.
Affected Software
2 affected components
Booster Booster Plus for WooCommerce<7.1.2
Booster Booster for WooCommerce WordPress<7.1.2
Remediation
Information
Update to 7.1.2 or a higher version.
Event History
Mar 28, 2024
CVE Published
via MITRE·06:36 AM
Data Sourced
via MITRE·06:36 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·07:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-52231?
CVE-2023-52231 has a moderate severity level, primarily due to the potential data exposure.
2
How do I fix CVE-2023-52231?
To fix CVE-2023-52231, update Booster Plus for WooCommerce to version 7.1.2 or later.
3
What information is exposed in CVE-2023-52231?
CVE-2023-52231 allows unauthorized actors to access sensitive order information.
4
Which versions of Booster Plus for WooCommerce are affected by CVE-2023-52231?
All versions of Booster Plus for WooCommerce prior to 7.1.2 are affected by CVE-2023-52231.
5
Who is affected by CVE-2023-52231?
Any users of Booster Plus for WooCommerce versions earlier than 7.1.2 are potentially affected by CVE-2023-52231.