CVE-2026-48883
- EPSS 0.24%
- Veröffentlicht 15.06.2026 20:19:03
- Zuletzt bearbeitet 15.06.2026 21:24:32
Unauthenticated Broken Access Control in WPC Product Bundles for WooCommerce <= 8.5.3 versions.
CVE-2026-32406
- EPSS 0.2%
- Veröffentlicht 13.03.2026 11:42:13
- Zuletzt bearbeitet 22.04.2026 21:30:26
Missing Authorization vulnerability in WPClever WPC Product Bundles for WooCommerce woo-product-bundle allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WPC Product Bundles for WooCommerce: from n/a through <=...
CVE-2024-2838
- EPSS 0.34%
- Veröffentlicht 27.04.2024 04:15:09
- Zuletzt bearbeitet 15.04.2026 00:35:42
The WPC Composite Products for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'wooco_components[0][name]' parameter in all versions up to, and including, 7.2.7 due to insufficient input sanitization and output e...
CVE-2024-32687
- EPSS 0.37%
- Veröffentlicht 22.04.2024 11:15:47
- Zuletzt bearbeitet 28.04.2026 19:24:52
Missing Authorization vulnerability in WPClever WPC Frequently Bought Together for WooCommerce.This issue affects WPC Frequently Bought Together for WooCommerce: from n/a through 7.0.3.
CVE-2023-52127
- EPSS 0.23%
- Veröffentlicht 05.01.2024 09:15:09
- Zuletzt bearbeitet 28.04.2026 19:22:58
Cross-Site Request Forgery (CSRF) vulnerability in WPClever WPC Product Bundles for WooCommerce.This issue affects WPC Product Bundles for WooCommerce: from n/a through 7.3.1.