PT-2023-27533 · WordPress · Doofinder Wp & Woocommerce Search

Minhtuanact

·

Published

2023-12-19

·

Updated

2023-12-22

·

CVE-2023-40602

CVSS v3.1
4.7
VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:N/A:N

Name of the Vulnerable Software and Affected Versions:

Doofinder WP & WooCommerce Search versions 1.5.49 and earlier

Description:

The issue is related to a URL Redirection to Untrusted Site, also known as an 'Open Redirect' vulnerability. This vulnerability affects Doofinder WP & WooCommerce Search, allowing redirection to untrusted sites.

Recommendations:

For versions 1.5.49 and earlier, update to a version later than 1.5.49 to resolve the issue.

At the moment, there is no information about additional mitigation measures for this vulnerability.

Fix

Open Redirect

Weakness Enumeration

Related Identifiers

CVE-2023-40602

Affected Products

Doofinder Wp & Woocommerce Search