WooCommerce Stripe Payment Gateway CSRF Vulnerability Affects Users
CVE-2023-44999
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 27 March 2024
What is CVE-2023-44999?
A Cross-Site Request Forgery (CSRF) vulnerability exists in the WooCommerce Stripe Payment Gateway, which may allow unauthorized actions to be executed on behalf of users without their consent. This issue potentially exposes users to significant risks, as an attacker could exploit this vulnerability to invoke unwanted transactions or modify user settings. Affected users of the WooCommerce Stripe Payment Gateway, particularly those using versions up to 7.6.0, should take immediate steps to mitigate the potential impacts of this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
WooCommerce Stripe Payment Gateway <= 7.6.0
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved