Beta

Report

ALD - AliExpress Dropshipping and Fulfillment for WooCommerce <= 1.1.0 is vulnerable to Sensitive Data Exposure vulnerability

Unauthenticated
Published
2022-10-11

The AliExpress Dropshipping and Fulfillment for WooCommerce Premium plugin for WordPress is vulnerable to Sensitive Data Exposure in versions up to, and including, 1.1.0. This could allow unauthenticated attackers to extract sensitive user or configuration data.

CVSS

Score:7.5

Severity:High

Version: 1.1.0

There is a patch available in v1.1.1 and we strongly recommend you update to this version as soon as possible.