Vulnerability index

Browse CVEs

8 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.1 CVE-2024-3731 The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 's' parameter in all versions up to… Customer Reviews For Woocommerce 5.48.0+ Fix from $1,6002024-04-19 MEDIUM 5.3 CVE-2024-1044 The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the… Customer Reviews For Woocommerce 5.39.0+ Fix from $1,6002024-02-29 MEDIUM 5.4 CVE-2023-0079 The Customer Reviews for WooCommerce WordPress plugin before 5.17.0 does not validate and escape some of its shortcode attributes before outputting t… Customer Reviews For Woocommerce 5.17.0+ Fix from $1,6002024-01-16 HIGH 8.8 CVE-2023-6979 The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the ivole_im… Customer Reviews For Woocommerce after 5.38.9 Fix from $1,9502024-01-11 HIGH 8.8 CVE-2023-0080 The Customer Reviews for WooCommerce WordPress plugin before 5.16.0 does not validate one of its shortcode attribute, which could allow users with a … Customer Reviews For Woocommerce 5.16.0+ Fix from $1,9502023-02-13 HIGH 8.8 CVE-2022-38134 Authenticated (subscriber+) Broken Access Control vulnerability in Customer Reviews for WooCommerce plugin <= 5.3.5 at WordPress. Customer Reviews For Woocommerce after 5.3.5 Fix from $1,9502022-09-23 HIGH 8.8 CVE-2022-38470 Cross-Site Request Forgery (CSRF) vulnerability in Customer Reviews for WooCommerce plugin <= 5.3.5 at WordPress. Customer Reviews For Woocommerce after 5.3.5 Fix from $1,9502022-09-23 HIGH 7.5 CVE-2022-40194 Unauthenticated Sensitive Information Disclosure vulnerability in Customer Reviews for WooCommerce plugin <= 5.3.5 at WordPress Customer Reviews For Woocommerce after 5.3.5 Fix from $1,9502022-09-23