CVE-2026-57698
- EPSS 0.25%
- Veröffentlicht 13.07.2026 08:41:24
- Zuletzt bearbeitet 13.07.2026 16:57:56
Authentication Bypass Using an Alternate Path or Channel vulnerability in VillaTheme Abandoned Cart Recovery for WooCommerce woo-abandoned-cart-recovery allows Authentication Abuse.This issue affects Abandoned Cart Recovery for WooCommerce: from n/a ...
CVE-2026-32526
- EPSS 0.18%
- Veröffentlicht 25.03.2026 16:15:08
- Zuletzt bearbeitet 24.04.2026 16:35:20
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VillaTheme Abandoned Cart Recovery for WooCommerce woo-abandoned-cart-recovery allows Stored XSS.This issue affects Abandoned Cart Recovery for WooC...
CVE-2021-4395
- EPSS 0.43%
- Veröffentlicht 01.07.2023 06:15:09
- Zuletzt bearbeitet 08.04.2026 18:17:17
The Abandoned Cart Recovery for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.0.4. This is due to missing or incorrect nonce validation on the get_items() and extra_tablenav() functio...