CVEs (3)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Advanced Woo Search 1Advanced Woo Search Jun 17, 2026 Jan 13, 2024 N/A· v4 6.1 MEDIUM· v3 N/A· v2 The Advanced Woo Search plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the search parameter in all versions up to, and including, 2.96 due to insufficient input sanitization and output escaping....Show more |
1Advanced Woo Search 1Advanced Woo Search Jun 17, 2026 Jun 9, 2023 N/A· v4 4.4 MEDIUM· v3 N/A· v2 The Advanced Woo Search plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in versions up to, and including, 2.77 due to insufficient input sanitization and output escaping. This makes...Show more |
1Advanced Woo Search 1Advanced Woo Search Jun 17, 2026 Apr 24, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 The Advanced Woo Search plugin version through 1.99 for Wordpress suffers from a sensitive information disclosure vulnerability in every ajax search request via the sql field to includes/class-aws-search.php. |