Vulnerability index

Browse CVEs

63 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Husky Products Filter Professional For Woocommerce HIGH 7.2
CVE-2024-3061

The HUSKY – Products Filter Professional for WooCommerce plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and includ…

Fix: 1.3.5.3+
Fix from $1,950 2024-03-29
Bear Woocommerce Bulk Editor And Products Manager Professional MEDIUM 6.1
CVE-2024-30200

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in realmag777 BEAR allows Reflected XSS.This issue…

Fix: 1.1.4.3+
Fix from $1,600 2024-03-28
Wordpress Meta Data And Taxonomies Filter MEDIUM 6.1
CVE-2024-29763

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in realmag777 WordPress Meta Data and Taxonomies F…

Fix: 1.3.3.1+
Fix from $1,600 2024-03-27
Wordpress Meta Data And Taxonomies Filter MEDIUM 5.4
CVE-2024-29932

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in realmag777 WordPress Meta Data and Taxonomies F…

Fix: 1.3.3+
Fix from $1,600 2024-03-27
Wordpress Meta Data And Taxonomies Filter MEDIUM 5.4
CVE-2024-29906

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in realmag777 WordPress Meta Data and Taxonomies F…

Fix: 1.3.3+
Fix from $1,600 2024-03-27
Bear Woocommerce Bulk Editor And Products Manager Professional MEDIUM 6.5
CVE-2024-24835

Missing Authorization vulnerability in realmag777 BEAR.This issue affects BEAR: from n/a through 1.1.4.

Fix: 1.1.4.1+
Fix from $1,600 2024-03-23
Husky Products Filter Professional For Woocommerce HIGH 8.8
CVE-2023-50861

Cross-Site Request Forgery (CSRF) vulnerability in realmag777 HUSKY – Products Filter for WooCommerce (formerly WOOF).This issue affects HUSKY – Prod…

Fix: 1.3.4.4+
Fix from $1,950 2024-03-15
Husky Products Filter Professional For Woocommerce MEDIUM 5.4
CVE-2024-1796

The HUSKY – Products Filter for WooCommerce Professional plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'woof' sh…

Fix: 1.3.5.2+
Fix from $1,600 2024-03-15
Husky Products Filter Professional For Woocommerce HIGH 8.8
CVE-2024-1795

The HUSKY – Products Filter for WooCommerce Professional plugin for WordPress is vulnerable to SQL Injection via the 'name' parameter in the woof sho…

Fix: after 1.3.5.2
Fix from $1,950 2024-03-15
Woot MEDIUM 5.4
CVE-2023-51480

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in realmag777 Active Products Tables for WooCommer…

Fix: after 1.0.6
Fix from $1,600 2024-02-10
Wordpress Currency Switcher MEDIUM 5.4
CVE-2023-51506

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in realmag777 WPCS – WordPress Currency Switcher P…

Fix: after 1.2.0
Fix from $1,600 2024-02-01
Wolf Wordpress Posts Bulk Editor And Products Manager Professional MEDIUM 6.1
CVE-2024-22159

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in realmag777 WOLF – WordPress Posts Bulk Editor a…

Fix: after 1.0.8
Fix from $1,600 2024-01-31
Fox Currency Switcher Professional For Woocommerce HIGH 8.8
CVE-2021-24566

The WooCommerce Currency Switcher FOX WordPress plugin before 1.3.7 was vulnerable to LFI attacks via the "woocs" shortcode.

Fix: 1.3.7+
Fix from $1,950 2024-01-16
Fox Currency Switcher Professional For Woocommerce MEDIUM 5.4
CVE-2023-6556

The FOX – Currency Switcher Professional for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via currency options in al…

Fix: after 1.4.1.5
Fix from $1,600 2024-01-11
Woot CRITICAL 9.8
CVE-2023-51505

Deserialization of Untrusted Data vulnerability in realmag777 Active Products Tables for WooCommerce. Professional products tables for WooCommerce st…

Fix: after 1.0.6
Fix from $2,300 2023-12-29
Husky Products Filter Professional For Woocommerce CRITICAL 9.8
CVE-2023-40010

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in realmag777 HUSKY – Products Filter for WooComme…

Fix: 1.3.4.3+
Fix from $2,300 2023-12-20
Fox Currency Switcher Professional For Woocommerce HIGH 8.8
CVE-2023-49834

Cross-Site Request Forgery (CSRF) vulnerability in realmag777 FOX – Currency Switcher Professional for WooCommerce.This issue affects FOX – Currency …

Fix: 1.4.1.5+
Fix from $1,950 2023-12-17
Wolf Wordpress Posts Bulk Editor And Products Manager Professional HIGH 8.8
CVE-2023-46152

Cross-Site Request Forgery (CSRF) vulnerability in realmag777 WOLF – WordPress Posts Bulk Editor and Manager Professional plugin <= 1.0.7.1 versions.

Fix: 1.0.7.2+
Fix from $1,950 2023-10-25
Bear Woocommerce Bulk Editor And Products Manager Professional HIGH 8.8
CVE-2023-4920

The BEAR for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.3.3. This is due to missing or incorrect non…

Fix: after 1.1.3.3
Fix from $1,950 2023-10-20
Wolf Wordpress Posts Bulk Editor And Products Manager Professional MEDIUM 6.1
CVE-2023-31218

Cross-Site Request Forgery (CSRF) leading to Stored Cross-Site Scripting (XSS) vulnerability in realmag777 WOLF – WordPress Posts Bulk Editor and Man…

Fix: 1.0.7+
Fix from $1,600 2023-08-18
Wolf Wordpress Posts Bulk Editor And Manager Professional HIGH 8.8
CVE-2023-34028

Cross-Site Request Forgery (CSRF) vulnerability in realmag777 WOLF – WordPress Posts Bulk Editor and Manager Professional plugin <= 1.0.7 versions.

Fix: after 1.0.7
Fix from $1,950 2023-06-22
Wordpress Currency Switcher Professional MEDIUM 5.4
CVE-2023-2558

The WPCS – WordPress Currency Switcher Professional plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's wpcs_current_c…

Fix: after 1.1.9
Fix from $1,600 2023-06-09
Bear Woocommerce Bulk Editor And Products Manager Professional HIGH 8.8
CVE-2023-33314

Cross-Site Request Forgery (CSRF) vulnerability in realmag777 BEAR plugin <= 1.1.3.1 versions.

Fix: 1.1.3.2+
Fix from $1,950 2023-05-28
Wordpress Meta Data And Taxonomies Filter MEDIUM 5.4
CVE-2023-28664

The Meta Data and Taxonomies Filter WordPress plugin, in versions < 1.3.1, is affected by a reflected cross-site scripting vulnerability in the 'tax_…

Fix: after 1.3.1
Fix from $1,600 2023-03-22
Inpost Gallery MEDIUM 5.4
CVE-2023-28666

The InPost Gallery WordPress plugin, in versions < 2.2.2, is affected by a reflected cross-site scripting vulnerability in the 'imgurl' parameter to …

Fix: after 2.1.4.1
Fix from $1,600 2023-03-22
Husky Products Filter Professional For Woocommerce HIGH 7.2
CVE-2022-4489

The HUSKY WordPress plugin before 1.3.2 unserializes user input provided via the settings, which could allow high privilege users such as admin to pe…

Fix: 1.3.2+
Fix from $1,950 2023-02-06
Fox Currency Switcher Professional For Woocommerce MEDIUM 5.4
CVE-2022-4431

The WOOCS WordPress plugin before 1.3.9.4 does not validate and escape some of its shortcode attributes before outputting them back in the page, whic…

Fix: 1.3.9.4+
Fix from $1,600 2023-01-16
Inpost Gallery CRITICAL 9.8
CVE-2022-4063EPSS 10%

The InPost Gallery WordPress plugin before 2.1.4.1 insecurely uses PHP's extract() function when rendering HTML views, allowing attackers to force th…

Fix: 2.1.4.1+
Fix from $2,300 2022-12-19
Woot MEDIUM 6.1
CVE-2022-1916

The Active Products Tables for WooCommerce. Professional products tables for WooCommerce store WordPress plugin before 1.0.5 does not sanitise and es…

Fix: 1.0.5+
Fix from $1,600 2022-06-27
Woocs MEDIUM 6.1
CVE-2022-0234

The WOOCS WordPress plugin before 1.3.7.5 does not sanitise and escape the woocs_in_order_currency parameter of the woocs_get_products_price_html AJA…

Fix: 1.3.7.5+
Fix from $1,600 2022-02-21