CVEs (2)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Cedcommerce 2Wholesale Market Wholesale Market For WoocommerceJun 12, 2025 May 16, 2025 N/A· v4 6.5 MEDIUM· v3 N/A· v2 The Wholesale Market WordPress plugin before 2.2.2, Wholesale Market for WooCommerce WordPress plugin before 2.0.1 have a flawed CSRF check when updating their settings, which could allow attackers to make a logged in ad...Show more |
The Wholesale Market WordPress plugin before 2.2.1 does not have authorisation check, as well as does not validate user input used to generate system path, allowing unauthenticated attackers to download arbitrary file fr...Show more |