Vulnerabilities > Standalonetech

DATE CVE VULNERABILITY TITLE RISK
2023-03-01 CVE-2022-40198 Cross-Site Request Forgery (CSRF) vulnerability in Standalonetech Terawallet
Cross-Site Request Forgery (CSRF) vulnerability in StandaloneTech TeraWallet – For WooCommerce plugin <= 1.3.24 leading to plugin settings change.
network
low complexity
standalonetech CWE-352
4.3
2023-02-02 CVE-2022-36401 Cross-Site Request Forgery (CSRF) vulnerability in Standalonetech Terawallet
Cross-Site Request Forgery (CSRF) vulnerability in TeraWallet – For WooCommerce plugin <= 1.3.24 versions.
network
low complexity
standalonetech CWE-352
8.8
2022-11-29 CVE-2022-3995 Authorization Bypass Through User-Controlled Key vulnerability in Standalonetech Terawallet
The TeraWallet plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to, and including, 1.4.3.
network
low complexity
standalonetech CWE-639
4.3