Sensitive Data Exposure in RadiusTheme ShopBuilder for WooCommerce by Elementor
CVE-2024-34812

5.3MEDIUM

What is CVE-2024-34812?

An issue has been identified in the ShopBuilder – Elementor WooCommerce Builder Addons from RadiusTheme, whereby sensitive information can be exposed to unauthorized individuals. This vulnerability affects versions up to 2.1.8 and poses a significant risk to users who utilize these addons in their WordPress environments. It is imperative for site owners to assess their installations and implement necessary updates to mitigate the risk of data leaks.

Affected Version(s)

ShopBuilder – Elementor WooCommerce Builder Addons 0 <= 2.1.8

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

.