CVE-2023-52222


WordPress WooCommerce Plugin <= 8.2.2 is vulnerable to Cross Site Request Forgery (CSRF)

Cross-Site Request Forgery (CSRF) vulnerability in Automattic WooCommerce.This issue affects WooCommerce: from n/a through 8.2.2.



We have discovered 818,864 live websites that are affected by CVE-2023-52222.

Contact us to get more info




Affected Software

Product  WooCommerce
Category Ecommerce
Vulnerable Versions
  • from 0 through 8.2.2
Total Vulnerable Versions582
Vulnerable Domains818,864 live websites (63.36% of WooCommerce install base)


Common Weakness Enumeration


CWE-352 Cross-Site Request Forgery (CSRF)



Details

  • Published - Jan 8, 2024
  • Updated - Jan 8, 2024

Credits

  • Rafie Muhammad (Patchstack) (finder)





Countries

United States196,862 websites



Germany46,805 websites
France45,032 websites
GB41,512 websites
Italy40,631 websites
Russia29,609 websites
Spain29,562 websites
Netherlands26,197 websites
Vietnam23,230 websites
Australia20,413 websites

TLDs

.com367,970 websites
.it26,027 websites
.co.uk23,790 websites
.de23,238 websites
.ru23,092 websites
.org21,936 websites
.nl20,319 websites
.fr16,479 websites
.com.au15,603 websites
.net15,271 websites

Vulnerable Versions

Vulnerable versions are highlighted in red


References


Websites affected by CVE-2023-52222

Top websites that are affected by CVE-2023-52222. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
******.at Austria*,***
***.***.com United States*,***
************.com United States*,***
***.***********.com Italy*,***
***********.com Germany*,***
***********.com United States*,***
*****************.com United States*,***
***.*************.com United States*,***
***.*************.com United States*,***
**********.com United States*,***
See full domain list