CVE-2024-0432
- EPSS 0.08%
- Veröffentlicht 28.02.2024 09:15:41
- Zuletzt bearbeitet 10.02.2025 14:47:17
The Gestpay for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 20221130. This is due to missing or incorrect nonce validation on the 'ajax_delete_card' function. This makes it possib...
CVE-2024-0433
- EPSS 0.11%
- Veröffentlicht 28.02.2024 09:15:41
- Zuletzt bearbeitet 10.02.2025 14:43:32
The Gestpay for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 20221130. This is due to missing or incorrect nonce validation on the 'ajax_unset_default_card' function. This makes it...
CVE-2024-0431
- EPSS 0.16%
- Veröffentlicht 28.02.2024 09:15:40
- Zuletzt bearbeitet 25.02.2025 22:55:39
The Gestpay for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 20221130. This is due to missing or incorrect nonce validation on the 'ajax_set_default_card' function. This makes it p...