Live Vulnerability Intelligence
Threat Database
Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.
Threat Entry
Updated 2025-04-23
CVE-2023-3508 - Woocommerce Pre Orders Plugin
The WooCommerce Pre-Orders WordPress plugin before 2.0.3 has a flawed CSRF check when processing its tab actions, which could allow attackers to make logged in admins email pre-orders customer, change the released date, mark all pre-orders of a specific product as complete or cancel via CSRF attacks
PLUGIN
Woocommerce Pre Orders
CVE-2023-3508
Risk Score
Threat Entry
Updated 2025-04-23
CVE-2023-3507 - Woocommerce Pre Orders Plugin
The WooCommerce Pre-Orders WordPress plugin before 2.0.3 has a flawed CSRF check when canceling pre-orders, which could allow attackers to make logged in admins cancel arbitrary pre-orders via a CSRF attack
PLUGIN
Woocommerce Pre Orders
CVE-2023-3507
Risk Score
