Loading HuntDB...

wpweb

5 Products 23 CVEs

CVE Severity Distribution (All Time)

Critical
4
High
12
Medium
7
Low
0

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 21 CVEs

Recent CVEs

View all
CVE-2024-56265 HIGH 6 months, 1 week ago

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPWeb WooCommerce PDF Vouchers allows Reflected…

CVE-2024-54383 CRITICAL 6 months, 2 weeks ago

Incorrect Privilege Assignment vulnerability in wpweb WooCommerce PDF Vouchers allows Privilege Escalation.This issue affects WooCommerce PDF Voucher…

CVE-2024-10114 HIGH 8 months ago

The WooCommerce - Social Login plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 2.7.7. This is due t…

CVE-2024-39650 HIGH 8 months ago

Missing Authorization vulnerability in WPWeb Elite WooCommerce PDF Vouchers allows Accessing Functionality Not Properly Constrained by ACLs.This issu…

CVE-2024-49272 MEDIUM 8 months, 2 weeks ago

Cross-Site Request Forgery (CSRF) vulnerability in WPWeb Social Auto Poster allows Cross Site Request Forgery.This issue affects Social Auto Poster: …

CVE-2024-47369 HIGH 9 months ago

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WPWeb Social Auto Poster allows Reflecte…

CVE-2024-43131 HIGH 10 months, 3 weeks ago

Incorrect Authorization vulnerability in WPWeb Docket (WooCommerce Collections / Wishlist / Watchlist) allows Accessing Functionality Not Properly Co…

CVE-2024-39651 HIGH 10 months, 3 weeks ago

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WPWeb WooCommerce PDF Vouchers allows File Manipulati…

CVE-2024-7503 CRITICAL 10 months, 3 weeks ago

The WooCommerce - Social Login plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 2.7.5. This is due to th…

CVE-2024-6755 MEDIUM 11 months, 1 week ago

The Social Auto Poster plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a missing capability check on the ‘wpw…