CVE-2025-62061
- EPSS 0.03%
- Veröffentlicht 22.10.2025 14:32:52
- Zuletzt bearbeitet 20.01.2026 15:17:45
Cross-Site Request Forgery (CSRF) vulnerability in impleCode Product Catalog Simple post-type-x.This issue affects Product Catalog Simple: from n/a through <= 1.8.4.
CVE-2025-58992
- EPSS 0.03%
- Veröffentlicht 22.09.2025 19:16:23
- Zuletzt bearbeitet 22.09.2025 21:22:16
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in impleCode Product Catalog Simple allows Stored XSS. This issue affects Product Catalog Simple: from n/a through 1.8.2.
CVE-2025-49305
- EPSS 0.05%
- Veröffentlicht 06.06.2025 12:53:48
- Zuletzt bearbeitet 06.06.2025 14:06:58
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in impleCode Product Catalog Simple allows Stored XSS. This issue affects Product Catalog Simple: from n/a through 1.8.1.
CVE-2025-1405
- EPSS 0.09%
- Veröffentlicht 28.02.2025 07:15:34
- Zuletzt bearbeitet 06.03.2025 17:52:55
The Product Catalog Simple plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's show_products shortcode in all versions up to, and including, 1.7.11 due to insufficient input sanitization and output escaping on user supp...
CVE-2023-51687
- EPSS 0.69%
- Veröffentlicht 29.12.2023 15:15:10
- Zuletzt bearbeitet 21.11.2024 08:38:36
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in impleCode Product Catalog Simple.This issue affects Product Catalog Simple: from n/a through 1.7.6.
CVE-2020-36743
- EPSS 0.11%
- Veröffentlicht 01.07.2023 05:15:15
- Zuletzt bearbeitet 21.11.2024 05:30:12
The Product Catalog Simple plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.5.13. This is due to missing or incorrect nonce validation on the implecode_save_products_meta() function. This makes it p...
CVE-2023-29388
- EPSS 0.11%
- Veröffentlicht 07.04.2023 15:15:08
- Zuletzt bearbeitet 21.11.2024 07:56:58
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in impleCode Product Catalog Simple plugin <= 1.6.17 versions.