5.3
CVSSv3

CVE-2024-35680

Published: 10/06/2024 Updated: 12/06/2024
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability in YITH YITH WooCommerce Product Add-Ons allows Code Injection.This issue affects YITH WooCommerce Product Add-Ons: from n/a up to and including 4.9.2.

Vulnerable Product Search on Vulmon Subscribe to Product

yithemes yith woocommerce product add-ons