Cross-Site Request Forgery (CSRF) vulnerability in Sender Sender – Newsletter, SMS and Email Marketing Automation for WooCommerce.This issue affects Sender – Newsletter, SMS and Email Marketing Automation for WooCommerce: from n/a through 2.6.18.
References
Configurations
History
18 Sep 2024, 16:25
Type | Values Removed | Values Added |
---|---|---|
First Time |
Sender sender
Sender |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.8 |
CPE | cpe:2.3:a:sender:sender:*:*:*:*:*:wordpress:*:* | |
References | () https://patchstack.com/database/vulnerability/sender-net-automated-emails/wordpress-sender-newsletter-sms-and-email-marketing-automation-for-woocommerce-plugin-2-6-18-cross-site-request-forgery-csrf-vulnerability?_s_id=cve - Third Party Advisory |
27 Aug 2024, 13:02
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
26 Aug 2024, 21:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-08-26 21:15
Updated : 2024-09-18 16:25
NVD link : CVE-2024-39657
Mitre link : CVE-2024-39657
CVE.ORG link : CVE-2024-39657
JSON object : View
Products Affected
sender
- sender
CWE
CWE-352
Cross-Site Request Forgery (CSRF)