Weightbasedshipping provides a WooCommerce plugin for shipping-rate calculation based on product weight, a niche extension deployed on e-commerce platforms using the WordPress ecosystem. The observed vulnerability surface centers on cross-site request forgery (CSRF) weaknesses in the plugin's administrative functionality, a class of flaw typical of web extensions lacking proper token-validation discipline. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Weightbasedshipping over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-46794HIGH Cross-Site Request Forgery (CSRF) vulnerability in weightbasedshipping.Com WooCommerce Weight Based Shipping plugin <= 5.4.1 versions. | May 24, 2023 | 8.8 | 25 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Weightbasedshipping.
Media articles that mention a CVE ID that affects a product developed by Weightbasedshipping — matched by CVE ID, not by vendor name.