ec-store-do-woo-import AJAX action, which makes it possible for attackers to reset import via a forged request if they can trick an administrator into performing an action such as clicking on a link. Ecwid Shopping Cart <= 6.11.3 - Cross-Site Request Forgery (CSRF) to Reset Import
REPORT ID: dbc8835e-f0d9-47ca-a0c5-7133b9476069
The plugin contains a Cross-Site Request Forgery (CSRF) vulnerability due to a missing nonce check in the
You need to log in to view the vulnerability details.