Description
WordPress Plugin Conditional Payments for WooCommerce is prone to a cross-site request forgery vulnerability. Exploiting this issue may allow a remote attacker to perform certain administrative actions and gain unauthorized access to the affected application; other attacks are also possible. WordPress Plugin Conditional Payments for WooCommerce version 2.3.1 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.3.2 or latest
References
Related Vulnerabilities
Sqlite NULL Pointer Dereference Vulnerability (CVE-2019-19923)
MySQL CVE-2012-1757 Vulnerability (CVE-2012-1757)
Apache Tomcat Other Vulnerability (CVE-2011-1183)
Craft CMS Weak Password Recovery Mechanism for Forgotten Password Vulnerability (CVE-2022-29933)
Microsoft SQL Server CVE-2023-36728 Vulnerability (CVE-2023-36728)