Villatheme
Villatheme Orders Tracking FOR Woocommerce: vulnerabilidades y CVE
Villatheme Orders Tracking FOR Woocommerce tiene 3 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE3
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2024-4039 | Media (6.5) | 0.62% | — | 14 may 2024 | The The Orders Tracking for WooCommerce plugin for WordPress for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 1.2.10. This is due to the plugin allowing users to execute… |
| CVE-2023-4216 | Baja (2.7) | 0.66% | — | 4 sept 2023 | The Orders Tracking for WooCommerce WordPress plugin before 1.2.6 doesn't validate the file_url parameter when importing a CSV file, allowing high privilege users with the manage_woocommerce capability to access any… |
| CVE-2021-25062 | Media (6.1) | 0.89% | — | 24 ene 2022 | The Orders Tracking for WooCommerce WordPress plugin before 1.1.10 does not sanitise and escape the file_url before outputting it back in an admin page, leading to a Reflected Cross-Site Scripting |
Otros productos de Villatheme
Curcy · 9Woocommerce Thank YOU Page Customizer · 4Happy Helpdesk Support Ticket System · 4Woocommerce Photo Reviews · 3Wpbulky · 3Abandoned Cart Recovery FOR Woocommerce · 3Cart ALL IN ONE FOR Woocommerce · 2Thank YOU Page Customizer FOR Woocommerce · 2Buildkit · 1Affi · 1Exmage · 1Email Template Customizer FOR Woocommerce · 1