CVE-2023-40002Sensitive Information Exposure in LLC Booster FOR Woocommerce

Severity
6.5MEDIUMNVD
EPSS
0.3%
top 47.54%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 23

Description

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Pluggabl LLC Booster for WooCommerce plugin <= 7.1.1 versions.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 2.8 | Impact: 3.6

Affected Packages2 packages

CVEListV5pluggabl_llc/booster_for_woocommercen/a7.1.1
NVDbooster/booster7.1.1

🔴Vulnerability Details

2
GHSA
GHSA-fxx7-cjqg-p2v5: Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Pluggabl LLC Booster for WooCommerce plugin <= 72023-11-23
CVEList
WordPress Booster for WooCommerce Plugin <= 7.1.1 is vulnerable to Sensitive Data Exposure2023-11-22
CVE-2023-40002 — Sensitive Information Exposure | cvebase