High severity7.5NVD Advisory· Published Jun 14, 2023· Updated Jun 17, 2026
CVE-2023-34000
CVE-2023-34000
Description
Unauth. IDOR vulnerability leading to PII Disclosure in WooCommerce Stripe Payment Gateway plugin <= 7.4.0 versions.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:woocommerce:stripe_payment_gateway:*:*:*:*:*:wordpress:*:*+ 1 more
- cpe:2.3:a:woocommerce:stripe_payment_gateway:*:*:*:*:*:wordpress:*:*range: <7.4.1
- (no CPE)range: n/a
- Range: <=7.4.0
Patches
Vulnerability mechanics
References
2- patchstack.com/articles/unauthenticated-idor-to-pii-disclosure-vulnerability-in-woocommerce-stripe-gateway-pluginnvdExploit
- patchstack.com/database/vulnerability/woocommerce-gateway-stripe/wordpress-woocommerce-stripe-payment-gateway-plugin-7-4-0-insecure-direct-object-references-idor-vulnerabilitynvdThird Party Advisory
News mentions
0No linked articles in our index yet.