CVE-2023-32799
MEDIUMWooCommerce Shipping Multiple Addresses < 3.8.3 - Insecure Direct Object Reference
Title source: llmDescription
Authorization Bypass Through User-Controlled Key vulnerability in WooCommerce Shipping Multiple Addresses.This issue affects Shipping Multiple Addresses: from n/a through 3.8.3.
References (1)
Core 1
Scores
CVSS v3
6.5
EPSS
0.0054
EPSS Percentile
41.4%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Details
CWE
CWE-639
Status
published
Products (2)
WooCommerce/Shipping Multiple Addresses
< 3.8.3
woocommerce/shipping_multiple_addresses
< 3.8.3
Published
Dec 21, 2023
Tracked Since
Feb 18, 2026