Unauthenticated Shortcode Execution Vulnerability in Booster for WooCommerce by WordPress
CVE-2024-3957
7.3HIGH
What is CVE-2024-3957?
The Booster for WooCommerce plugin is susceptible to a vulnerability that enables unauthenticated attackers to execute arbitrary shortcodes. This risk is present in versions up to and including 7.1.8. The impact of this vulnerability can vary based on the additional plugins installed and the functionality of the shortcodes they offer, potentially leading to unauthorized actions on affected WordPress sites.
Affected Version(s)
Booster for WooCommerce * <= 7.1.8