Tychesoftwares
Tychesoftwares Order Delivery Date FOR Woocommerce: vulnerabilidades y CVE
Tychesoftwares Order Delivery Date FOR Woocommerce tiene 7 vulnerabilidades publicadas, 1 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE7
Últimos 12 meses1
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2025-63024 | Media (5.4) | 0.23% | — | 9 dic 2025 | Missing Authorization vulnerability in tychesoftwares Order Delivery Date for WooCommerce order-delivery-date-for-woocommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects… |
| CVE-2025-58599 | Media (4.3) | 0.24% | — | 3 sept 2025 | Missing Authorization vulnerability in tychesoftwares Order Delivery Date for WooCommerce order-delivery-date-for-woocommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects… |
| CVE-2025-2942 | Media (4.3) | 0.28% | — | 11 jul 2025 | The Order Delivery Date WordPress plugin before 12.6.0 discloses arbitrary post title (such as from draft and private posts) via an unauthenticated AJAX action, allowing attackers to retrieve such information |
| CVE-2025-2929 | Alta (7.1) | 0.26% | — | 20 may 2025 | The Order Delivery Date WordPress plugin before 12.4.0 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high… |
| CVE-2024-32434 | Media (4.3) | 0.21% | — | 15 abr 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Tyche Softwares Order Delivery Date for WooCommerce.This issue affects Order Delivery Date for WooCommerce: from n/a through 3.20.2. |
| CVE-2023-41858 | Alta (8.8) | 0.25% | — | 10 oct 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Ashok Rane Order Delivery Date for WP e-Commerce plugin <= 1.2 versions. |
| CVE-2023-41874 | Media (6.1) | 0.41% | — | 25 sept 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Tyche Softwares Order Delivery Date for WooCommerce plugin <= 3.20.0 versions. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.
Otros productos de Tychesoftwares
Arconix Shortcodes · 11Abandoned Cart Lite FOR Woocommerce · 6Product Input Fields FOR Woocommerce · 5Arconix FAQ · 4Product Delivery Date FOR Woocommerce Lite · 3Print Invoice AND Delivery Notes FOR Woocommerce · 2Product Delivery Date FOR Woocommerce · 2Woocommerce Delivery Notes · 2Abandoned Cart PRO FOR Woocommerce · 2Custom Order Numbers FOR Woocommerce · 2Order Delivery Date FOR WP E-commerce · 2Print Invoice & Delivery Notes FOR Woocommerce · 2