CVE-2023-32799
MEDIUMWoocommerce Shipping Multiple Addresses < 3.8.3 - IDOR
Title source: ruleDescription
Authorization Bypass Through User-Controlled Key vulnerability in WooCommerce Shipping Multiple Addresses.This issue affects Shipping Multiple Addresses: from n/a through 3.8.3.
References (1)
Core 1
Scores
CVSS v3
6.5
EPSS
0.0023
EPSS Percentile
45.3%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Details
CWE
CWE-639
Status
published
Products (2)
WooCommerce/Shipping Multiple Addresses
< 3.8.3
woocommerce/shipping_multiple_addresses
< 3.8.3
Published
Dec 21, 2023
Tracked Since
Feb 18, 2026