The All in One B2B for WooCommerce WordPress plugin through 1.0.3 does not properly check nonce values in several actions, allowing an attacker to perform CSRF attacks.
Name | Vendor | Start Version | End Version |
---|---|---|---|
All_in_one_b2b_for_woocommerce | All_in_one_b2b_for_woocommerce_project | * | 1.0.3 (including) |