CVE-2024-0432
- EPSS 0.09%
- Veröffentlicht 28.02.2024 09:15:41
- Zuletzt bearbeitet 08.04.2026 18:18:50
The Gestpay for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 20221130. This is due to missing or incorrect nonce validation on the 'ajax_delete_card' function. This makes it possib...
CVE-2024-0433
- EPSS 0.12%
- Veröffentlicht 28.02.2024 09:15:41
- Zuletzt bearbeitet 08.04.2026 18:18:50
The Gestpay for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 20221130. This is due to missing or incorrect nonce validation on the 'ajax_unset_default_card' function. This makes it...
CVE-2024-0431
- EPSS 0.17%
- Veröffentlicht 28.02.2024 09:15:40
- Zuletzt bearbeitet 08.04.2026 18:18:50
The Gestpay for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 20221130. This is due to missing or incorrect nonce validation on the 'ajax_set_default_card' function. This makes it p...