Popup Cart Lite for WooCommerce [woocommerce-woocart-popup-lite] <= 1.1 (unfixed + closed)
unknown
[en] Cross-Site Request Forgery (CSRF) vulnerability in Festi-Team Popup Cart Lite for WooCommerce.This issue affects Popup Cart Lite for WooCommerce: from n/a through 1.1.
- Affected:
- up to 1.1
- Fix:
- No patched version reported
- Disclosed:
- Mar 31, 2024
CVE-2024-31100 on NVD →
Popup Cart Lite for WooCommerce <= 1.1 - Cross-Site Request Forgery
medium
The Popup Cart Lite for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1. This is due to missing or incorrect nonce validation an unknown function. This makes it possible for unauthenticated attackers to perform an unauthorized action via a forged reques...
- CVSS:
- 4.3
- Affected:
- up to 1.1
- Fix:
- No patched version reported
- Disclosed:
- Mar 29, 2024
CVE-2024-31100 on NVD →
Protect your WordPress site
Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.
Scan your site free
← Back to the vulnerability database