CVE-2017-3211

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
15/01/2020
Last modified:
22/01/2020

Description

Yopify, an e-commerce notification plugin, up to April 06, 2017, leaks the first name, last initial, city, and recent purchase data of customers, all without user authorization.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:yopify:yopify:*:*:*:*:*:*:*:* 2017-04-06 (including)