The woocommerce-pdf-invoices-packing-slips plugin prior to 2.0.13 for WordPress has XSS via the tab or section variable on settings screens.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
wpovernight woocommerce pdf invoices\\& packing slips |