cleantalk
Vulnerabilities and Security Researches

Brevo for WooCommerce, CVE-2024-32807

CVE, Research URL

CVE-2024-32807

Application

Brevo for WooCommerce

Published on
May 06, 2024
Research Description
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Brevo Sendinblue for WooCommerce allows Relative Path Traversal, Manipulating Web Input to File System Calls.This issue affects Sendinblue for WooCommerce: from n/a through 4.0.17.
Affected versions
max 4.0.18.
Status
vulnerable