Vulnerability CVE-2023-37871


Published: 2023-12-20

Description:
Authorization Bypass Through User-Controlled Key vulnerability in WooCommerce GoCardless.This issue affects GoCardless: from n/a through 2.5.6.

Type:

CWE-639

(Authorization Bypass Through User-Controlled Key)

 References:
https://patchstack.com/database/vulnerability/woocommerce-gateway-gocardless/wordpress-woocommerce-gocardless-gateway-plugin-2-5-6-unauthenticated-insecure-direct-object-references-idor-vulnerability?_s_id=cve

Copyright 2026, cxsecurity.com

 

Back to Top