CVE Database /
CVE-2024-2395
CVE · Medium
CVE-2024-2395 — Bulgarisation for WooCommerce [bulgarisation-for-woocommerce] < 3.0.15
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2024-2395
|
Bulgarisation for WooCommerce [bulgarisation-for-woocommerce] < 3.0.15 |
Cross-Site Request Forgery (CSRF) |
Medium
4.3
|
< 3.0.15
|
3.0.15 |
2024-03-12 |
—
|
CVE-2024-2395
The Bulgarisation for WooCommerce plugin before version 3.0.15 contains a cross-site request forgery vulnerability that could enable attackers to trick authenticated users with elevated privileges into performing unintended actions on the site. Researcher Francesco Carlucci identified and disclosed this flaw, which has been patched in version 3.0.15 and later. Users should upgrade immediately to protect their installations from potential exploitation.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings