Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total2
Critical0
High0
Medium2
Reset
Showing 1-2 of 2 records
Threat Entry Updated 2025-04-23

CVE-2023-3508 - Woocommerce Pre Orders Plugin

The WooCommerce Pre-Orders WordPress plugin before 2.0.3 has a flawed CSRF check when processing its tab actions, which could allow attackers to make logged in admins email pre-orders customer, change the released date, mark all pre-orders of a specific product as complete or cancel via CSRF attacks

PLUGIN Woocommerce Pre Orders

CVE-2023-3508

MEDIUM CVSS 6.5 2023-07-31
Threat Entry Updated 2025-04-23

CVE-2023-3507 - Woocommerce Pre Orders Plugin

The WooCommerce Pre-Orders WordPress plugin before 2.0.3 has a flawed CSRF check when canceling pre-orders, which could allow attackers to make logged in admins cancel arbitrary pre-orders via a CSRF attack

PLUGIN Woocommerce Pre Orders

CVE-2023-3507

MEDIUM CVSS 6.5 2023-07-31
Scroll to top