CVE-2024-47634: Majas-Lapu-Izstrade Cartbounty

Critical severity, CVSS 9.8. EPSS: 0.2% chance of exploitation in the next 30 days.

Cross-Site Request Forgery (CSRF) vulnerability in Streamline CartBounty – Save and recover abandoned carts for WooCommerce woo-save-abandoned-carts allows Cross Site Request Forgery.This issue affects CartBounty – Save and recover abandoned carts for WooCommerce: from n/a through <= 8.2.

Affected products

Published 2024-10-20. Last modified 2026-06-17.