CVE-2024-30458: WordPress FOX – Currency Switcher Professional for WooCommerce plugin <= 1.4.1.7 - Cross Site Request Forgery (CSRF) vulnerability
Published Mar 29, 2024
·Updated
Cross-Site Request Forgery (CSRF) vulnerability in realmag777 WOOCS – WooCommerce Currency Switcher.This issue affects WOOCS – WooCommerce Currency Switcher: from n/a through 1.4.1.7.
Affected Software
3 affected components
realmag777 WOOCS – WooCommerce Currency Switcher<=1.4.1.7
FOX Currency Switcher Professional for WooCommerce<=1.4.1.7
Pluginus Fox - Currency Switcher Professional For Woocommerce Wordpress<1.4.1.8
Remediation
Information
Update to 1.4.1.8 or a higher version.
Event History
Mar 29, 2024
CVE Published
via MITRE·01:05 PM
Data Sourced
via MITRE·01:05 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-30458?
CVE-2024-30458 is a high severity Cross-Site Request Forgery (CSRF) vulnerability.
2
How do I fix CVE-2024-30458?
To fix CVE-2024-30458, update WOOCS – WooCommerce Currency Switcher to the latest version.
3
Which versions of WOOCS are affected by CVE-2024-30458?
CVE-2024-30458 affects WOOCS – WooCommerce Currency Switcher versions from n/a up to and including 1.4.1.7.
4
What type of vulnerability is CVE-2024-30458?
CVE-2024-30458 is classified as a Cross-Site Request Forgery (CSRF) vulnerability.
5
Is the Currency Switcher Professional for WooCommerce also affected by CVE-2024-30458?
Yes, the Currency Switcher Professional for WooCommerce is affected by the same CVE-2024-30458 vulnerability.