Yithemes

Yith Woocommerce Wishlist

2 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.05%
  • Published 14.06.2025 09:23:34
  • Last modified 16.06.2025 12:32:18

The YITH WooCommerce Wishlist plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘id’ parameter in all versions up to, and including, 4.5.0 due to insufficient input sanitization and output escaping. This makes it possible for ...

  • EPSS 0.51%
  • Published 31.10.2019 17:15:10
  • Last modified 21.11.2024 04:30:23

plugin-fw/lib/yit-plugin-panel-wc.php in the YIT Plugin Framework through 3.3.8 for WordPress allows authenticated options changes.