CVE-2024-44061
- EPSS 0.07%
- Veröffentlicht 20.10.2024 10:15:02
- Zuletzt bearbeitet 25.10.2024 09:15:05
: Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in WPFactory EU/UK VAT Manager for WooCommerce allows Cross-Site Scripting (XSS).This issue affects EU/UK VAT Manager for WooCommerce: from n/a through 2.12...
CVE-2024-8788
- EPSS 0.25%
- Veröffentlicht 28.09.2024 02:15:10
- Zuletzt bearbeitet 03.10.2024 17:25:41
The EU/UK VAT Manager for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.12.11. This makes it possible f...
CVE-2024-9189
- EPSS 0.08%
- Veröffentlicht 28.09.2024 02:15:10
- Zuletzt bearbeitet 03.10.2024 17:26:19
The EU/UK VAT Manager for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the alg_wc_eu_vat_exempt_vat_from_admin() function in all versions up to, and including, 2.12.12. This ...