Tychesoftwares
Tychesoftwares Abandoned Cart Lite FOR Woocommerce: vulnerabilidades y CVE
Tychesoftwares Abandoned Cart Lite FOR Woocommerce tiene 6 vulnerabilidades publicadas, 1 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE6
Últimos 12 meses1
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-12585 | Alta (8.1) | 0.38% | — | 16 jul 2026 | The Abandoned Cart Lite for WooCommerce WordPress plugin before 6.8.2 does not protect the integrity of its cart-recovery tokens or bind them to the requesting account, allowing unauthenticated attackers to forge a… |
| CVE-2023-41671 | Media (5.4) | 0.48% | — | 13 dic 2024 | Missing Authorization vulnerability in tychesoftwares Abandoned Cart Lite for WooCommerce woocommerce-abandoned-cart allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Abandoned… |
| CVE-2023-44986 | Media (4.8) | 0.32% | — | 16 oct 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Tyche Softwares Abandoned Cart Lite for WooCommerce plugin <= 5.15.2 versions. |
| CVE-2021-4414 | Media (4.3) | 0.38% | — | 12 jul 2023 | The Abandoned Cart Lite for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.8.5. This is due to missing or incorrect nonce validation on the… |
| CVE-2019-25152 | Media (6.1) | 1.4% | — | 22 jun 2023 | The Abandoned Cart Lite for WooCommerce and Abandoned Cart Pro for WooCommerce plugins for WordPress are vulnerable to Stored Cross-Site Scripting via multiple parameters in versions up to, and including, 5.1.3 and… |
| CVE-2023-2986 | Crítica (9.8) | 43% | — | 8 jun 2023 | The Abandoned Cart Lite for WooCommerce plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 5.14.2. This is due to insufficient encryption on the user being supplied during the… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.
Otros productos de Tychesoftwares
Arconix Shortcodes · 11Order Delivery Date FOR Woocommerce · 7Product Input Fields FOR Woocommerce · 5Arconix FAQ · 4Product Delivery Date FOR Woocommerce Lite · 3Abandoned Cart PRO FOR Woocommerce · 2Custom Order Numbers FOR Woocommerce · 2Order Delivery Date FOR WP E-commerce · 2Print Invoice AND Delivery Notes FOR Woocommerce · 2Product Delivery Date FOR Woocommerce · 2Woocommerce Delivery Notes · 2Print Invoice & Delivery Notes FOR Woocommerce · 2