cleantalk
Vulnerabilities and Security Researches

Export customers list csv for WooCommerce, WordPress users csv, export Guest customer list, CVE-2022-3603

CVE, Research URL

CVE-2022-3603

Published on
Nov 28, 2022
Research Description
The Export customers list csv for WooCommerce, WordPress users csv, export Guest customer list WordPress plugin before 2.0.69 does not validate data when outputting it back in a CSV file, which could lead to CSV injection.
Affected versions
Min -, max 2.0.69.
Status
vulnerable