cbcvebase.
CVE-2023-41796
published 2023-12-20

CVE-2023-41796: Authorization Bypass Through User-Controlled Key vulnerability in WP Sunshine Sunshine Photo Cart: Free Client Galleries for Photographers.This issue affects…

PriorityP434medium6.5CVSS 3.1
AVNACLPRNUINSUCLILAN
EPSS
0.36%
27.8th percentile
Authorization Bypass Through User-Controlled Key vulnerability in WP Sunshine Sunshine Photo Cart: Free Client Galleries for Photographers.This issue affects Sunshine Photo Cart: Free Client Galleries for Photographers: from n/a before 3.0.0.

Affected

2 ranges
VendorProductVersion rangeFixed in
sunshinephotocartsunshine_photo_cart< 3.03.0
wp_sunshinesunshine_photo_cart_free_client_galleries_for_photographers>= n/a < 3.0.03.0.0
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.