CVE-2026-32406
- EPSS 0.03%
- Veröffentlicht 13.03.2026 11:42:13
- Zuletzt bearbeitet 16.03.2026 14:53:46
Missing Authorization vulnerability in WPClever WPC Product Bundles for WooCommerce woo-product-bundle allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WPC Product Bundles for WooCommerce: from n/a through <=...
CVE-2024-2838
- EPSS 0.18%
- Veröffentlicht 27.04.2024 04:15:09
- Zuletzt bearbeitet 15.04.2026 00:35:42
The WPC Composite Products for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'wooco_components[0][name]' parameter in all versions up to, and including, 7.2.7 due to insufficient input sanitization and output e...
CVE-2024-32687
- EPSS 0.23%
- Veröffentlicht 22.04.2024 11:15:47
- Zuletzt bearbeitet 15.04.2026 00:35:42
Missing Authorization vulnerability in WPClever WPC Frequently Bought Together for WooCommerce.This issue affects WPC Frequently Bought Together for WooCommerce: from n/a through 7.0.3.
CVE-2023-52127
- EPSS 0.07%
- Veröffentlicht 05.01.2024 09:15:09
- Zuletzt bearbeitet 21.11.2024 08:39:14
Cross-Site Request Forgery (CSRF) vulnerability in WPClever WPC Product Bundles for WooCommerce.This issue affects WPC Product Bundles for WooCommerce: from n/a through 7.3.1.