CVE-2024-30230
CVSS 3.1 Score 8.2 of 10 (high)
Details
Published Mar 28, 2024
CWE ID 502
Summary
CVE-2024-30230 is a Deserialization of Untrusted Data vulnerability affecting the Acowebs PDF Invoices and Packing Slips For WooCommerce plugin. This issue, present in versions from n/a through 1.3.7, allows an unauthenticated attacker to exploit deserialization flaws, potentially leading to arbitrary code execution and serious security implications for WordPress websites using this plugin. It is crucial for users to update their PDF Invoices and Packing Slips For WooCommerce plugin to the latest patched version to mitigate the risk of exploitation.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.