Vulnerabilities
Vulnerable Software
The WooCommerce Google Sheet Connector plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the execute_post_data function in all versions up to, and including, 1.3.11. This makes it possible for unauthenticated attackers to update plugin settings.
CVSS Score
5.3
EPSS Score
0.001
Published
2024-02-21
The WooCommerce Google Sheet Connector WordPress plugin before 1.3.6 does not have CSRF check when updating its Access Code, which could allow attackers to make logged in admin change the access code to an arbitrary one via a CSRF attack
CVSS Score
8.8
EPSS Score
0.003
Published
2023-07-17


Contact Us

Shodan ® - All rights reserved