CVE-2024-50448
- EPSS 0.39%
- Veröffentlicht 28.10.2024 18:15:06
- Zuletzt bearbeitet 01.04.2026 16:19:05
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in YITHEMES YITH WooCommerce Product Add-Ons yith-woocommerce-product-add-ons.This issue affects YITH WooCommerce Product Add-Ons: from n/a through <= ...
CVE-2024-35680
- EPSS 0.17%
- Veröffentlicht 10.06.2024 16:15:15
- Zuletzt bearbeitet 01.04.2026 16:17:17
Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in YITHEMES YITH WooCommerce Product Add-Ons yith-woocommerce-product-add-ons.This issue affects YITH WooCommerce Product Add-Ons: from n/a through <= 4.9.2.
CVE-2023-49777
- EPSS 0.38%
- Veröffentlicht 31.12.2023 11:15:08
- Zuletzt bearbeitet 21.11.2024 08:33:49
Deserialization of Untrusted Data vulnerability in YITH YITH WooCommerce Product Add-Ons.This issue affects YITH WooCommerce Product Add-Ons: from n/a through 4.3.0.
CVE-2019-16251
- EPSS 0.48%
- Veröffentlicht 31.10.2019 17:15:10
- Zuletzt bearbeitet 21.11.2024 04:30:23
plugin-fw/lib/yit-plugin-panel-wc.php in the YIT Plugin Framework through 3.3.8 for WordPress allows authenticated options changes.