Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
booster booster for woocommerce vulnerabilities and exploits
(subscribe to this query)
6.1
CVSSv3
CVE-2021-25000
The Booster for WooCommerce WordPress plugin prior to 5.4.9 does not sanitise and escape the wcj_delete_role parameter before outputting back in the admin dashboard when the General module is enabled, leading to a Reflected Cross-Site Scripting issue
Booster Booster For Woocommerce
6.5
CVSSv3
CVE-2022-4016
The Booster for WooCommerce WordPress plugin prior to 5.6.7, Booster Plus for WooCommerce WordPress plugin prior to 5.6.6, Booster Elite for WooCommerce WordPress plugin prior to 1.1.8 does not properly check for CSRF when creating and deleting Customer roles, allowing malicious ...
Booster Booster For Woocommerce
6.1
CVSSv3
CVE-2018-20966
The woocommerce-jetpack plugin prior to 3.8.0 for WordPress has XSS in the Products Per Page feature.
Booster Booster For Woocommerce
2 Github repositories
4.3
CVSSv3
CVE-2022-41805
Cross-Site Request Forgery (CSRF) vulnerability in Booster for WooCommerce plugin <= 5.6.6 on WordPress.
Booster Booster For Woocommerce
4.3
CVSSv3
CVE-2023-4796
The Booster for WooCommerce for WordPress is vulnerable to Information Disclosure via the 'wcj_wp_option' shortcode in versions up to, and including, 7.1.0 due to insufficient controls on the information retrievable via the shortcode. This makes it possible for authenti...
Booster Booster For Woocommerce
5.4
CVSSv3
CVE-2023-5638
The Booster for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'wcj_image' shortcode in versions up to, and including, 7.1.2 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible...
Booster Booster For Woocommerce
NA
CVE-2023-52231
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Booster Booster Plus for WooCommerce.This issue affects Booster Plus for WooCommerce: from n/a prior to 7.1.2.
NA
CVE-2023-52234
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Booster Booster Elite for WooCommerce.This issue affects Booster Elite for WooCommerce: from n/a prior to 7.1.2.
NA
CVE-2023-48747
Improper Authentication vulnerability in Pluggabl LLC Booster for WooCommerce allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Booster for WooCommerce: from n/a up to and including 7.1.2.
NA
CVE-2023-51511
Improper Authentication vulnerability in Pluggabl LLC Booster Elite for WooCommerce allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Booster Elite for WooCommerce: from n/a prior to 7.1.3.
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-38627
CVE-2022-45803
CVE-2024-38319
camera
template injection
CVE-2024-27801
CVE-2024-0762
CVE-2024-5791
unauthorized
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
NEXT »