Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
booster booster for woocommerce vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2022-4227
The Booster for WooCommerce WordPress plugin prior to 5.6.3, Booster Plus for WooCommerce WordPress plugin prior to 6.0.0, Booster Elite for WooCommerce WordPress plugin prior to 6.0.0 do not escape some URLs and parameters before outputting them back in attributes, leading to Re...
Booster Booster For Woocommerce
Booster Booster Elite For Woocommerce
Booster Booster Plus For Woocommerce
NA
CVE-2022-4017
The Booster for WooCommerce WordPress plugin prior to 6.0.1, Booster Plus for WooCommerce WordPress plugin prior to 6.0.1, Booster Elite for WooCommerce WordPress plugin prior to 6.0.1 have either flawed CSRF checks or are missing them completely in numerous places, allowing mali...
Booster Booster For Woocommerce
Booster Booster Elite Woocommerce
Booster Booster Plus Woocommerce
NA
CVE-2023-48333
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Pluggabl LLC Booster for WooCommerce.This issue affects Booster for WooCommerce: from n/a up to and including 7.1.1.
Booster Booster For Woocommerce
NA
CVE-2023-40002
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Pluggabl LLC Booster for WooCommerce plugin <= 7.1.1 versions.
Booster Booster For Woocommerce
231
VMScore
CVE-2021-24999
The Booster for WooCommerce WordPress plugin prior to 5.4.9 does not sanitise and escape the wcj_notice parameter before outputting it back in the admin dashboard when the Pdf Invoicing module is enabled, leading to a Reflected Cross-Site Scripting
Booster Booster For Woocommerce
231
VMScore
CVE-2021-25001
The Booster for WooCommerce WordPress plugin prior to 5.4.9 does not sanitise and escape the wcj_create_products_xml_result parameter before outputting back in the admin dashboard when the Product XML Feeds module is enabled, leading to a Reflected Cross-Site Scripting issue
Booster Booster For Woocommerce
NA
CVE-2022-3762
The Booster for WooCommerce WordPress plugin prior to 5.6.7, Booster Plus for WooCommerce WordPress plugin prior to 5.6.5, Booster Elite for WooCommerce WordPress plugin prior to 1.1.7 do not validate files to download in some of its modules, which could allow ShopManager and Adm...
Booster Booster For Woocommerce
668
VMScore
CVE-2021-34646
Versions up to, and including, 5.4.3, of the Booster for WooCommerce WordPress plugin are vulnerable to authentication bypass via the process_email_verification function due to a random token generation weakness in the reset_and_mail_activation_link function found in the ~/includ...
Booster Booster For Woocommerce
2 Github repositories
NA
CVE-2023-4945
The Booster for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple shortcodes in versions up to, and including, 7.1.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authent...
Booster Booster For Woocommerce
NA
CVE-2022-3763
The Booster for WooCommerce WordPress plugin prior to 5.6.7, Booster Plus for WooCommerce WordPress plugin prior to 5.6.5, Booster Elite for WooCommerce WordPress plugin prior to 1.1.7 do not have CSRF check in place when deleting files uploaded at the checkout, allowing maliciou...
Booster Booster For Woocommerce
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-38627
CVE-2022-45803
CVE-2024-38319
camera
template injection
CVE-2024-27801
CVE-2024-0762
CVE-2024-5791
unauthorized
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »