5.9
CVSSv3

CVE-2025-26929

CVSSv4: NA | CVSSv3: 5.9 | CVSSv2: NA | VMScore: 690 | EPSS: 0.00036 | KEV: Not Included
Published: 26/03/2025 Updated: 27/03/2025

Vulnerability Summary

Stored XSS Vulnerability in NOUS Accounting for WooCommerce Plugin Below 1.6.8

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NOUS Ouvert Utile et Simple Accounting for WooCommerce allows Stored XSS.This issue affects Accounting for WooCommerce: from n/a up to and including 1.6.8.

Solution

Update the WordPress Accounting for WooCommerce wordpress plugin to the latest available version (at least 1.6.9).
Vulnerable Product Search on Vulmon Subscribe to Product

nous ouvert utile et simple accounting for woocommerce