CVE-2025-58799
- EPSS 0.02%
- Veröffentlicht 05.09.2025 13:45:06
- Zuletzt bearbeitet 05.09.2025 17:47:10
Cross-Site Request Forgery (CSRF) vulnerability in themelocation Custom WooCommerce Checkout Fields Editor allows Cross Site Request Forgery. This issue affects Custom WooCommerce Checkout Fields Editor: from n/a through 1.3.4.
CVE-2024-33956
- EPSS 0.18%
- Veröffentlicht 14.05.2024 15:38:23
- Zuletzt bearbeitet 21.11.2024 09:17:48
Missing Authorization vulnerability in ThemeLocation Custom WooCommerce Checkout Fields Editor.This issue affects Custom WooCommerce Checkout Fields Editor: from n/a through 1.3.0.
CVE-2024-30518
- EPSS 0.16%
- Veröffentlicht 29.03.2024 16:15:11
- Zuletzt bearbeitet 21.11.2024 09:12:05
Cross-Site Request Forgery (CSRF) vulnerability in ThemeLocation Custom WooCommerce Checkout Fields Editor.This issue affects Custom WooCommerce Checkout Fields Editor: from n/a through 1.3.0.
CVE-2024-1697
- EPSS 0.14%
- Veröffentlicht 23.03.2024 02:15:46
- Zuletzt bearbeitet 13.02.2025 16:48:38
The Custom WooCommerce Checkout Fields Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the save_wcfe_options function in all versions up to, and including, 1.3.1 due to insufficient input sanitization and output escaping....