CVE-2024-13359 | tychesoftwares Product Input Fields for WooCommerce Plugin up to 1.12.1 on WordPress Double Extension add_product_input_fields_to_order_item_meta unrestricted upload
A vulnerability was found in tychesoftwares Product Input Fields for WooCommerce Plugin up to 1.12.1 on WordPress. It has been declared as critical. This vulnerability affects the function add_product_input_fields_to_order_item_meta of the component Double Extension Handler. The manipulation leads to unrestricted upload.
This vulnerability was named CVE-2024-13359. The attack can be initiated remotely. There is no exploit available.