The WooCommerce admin AJAX handlers WC_AJAX::product_ordering() and WC_AJAX::term_ordering() changed the menu_order of products and taxonomy terms without verifying a nonce; they were the only state-changing handlers in the file with the nonce check suppressed. An attacker could therefore forge a cross-site request that, when opened by a logged-in... Weiterlesen
Intelligence View
⚡ tsecurity.de Intelligence
SOCIAL SHARE CARD GENERATOR