CVEs (13)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Cusrev 1Customer Reviews For Woocommerce Apr 29, 2026 Jan 2, 2025 N/A· v4 4.3 MEDIUM· v3 N/A· v2 Missing Authorization vulnerability in CusRev Customer Reviews for WooCommerce customer-reviews-woocommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Customer Reviews for...Show more |
1Cusrev 1Customer Reviews For Woocommerce Feb 5, 2025 Nov 16, 2024 N/A· v4 4.3 MEDIUM· v3 N/A· v2 The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the cancel_import() function in all versions up to, and including, 5.61.0. This makes it...Show more |
1Cusrev 1Customer Reviews For Woocommerce Apr 8, 2026 Apr 19, 2024 N/A· v4 6.1 MEDIUM· v3 N/A· v2 The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 's' parameter in all versions up to, and including, 5.47.0 due to insufficient input sanitization and outp...Show more |
1Cusrev 1Customer Reviews For Woocommerce Apr 8, 2026 Apr 16, 2024 N/A· v4 4.3 MEDIUM· v3 N/A· v2 The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'woocommerce_json_search_coupons' function . This makes it possible for atta...Show more |
1Cusrev 1Customer Reviews For Woocommerce Apr 8, 2026 Apr 16, 2024 N/A· v4 4.3 MEDIUM· v3 N/A· v2 The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to unauthorized email sending due to a missing capability check on the send_test_email() function in all versions up to, and including, 5.46.0. This...Show more |
1Cusrev 1Customer Reviews For Woocommerce Apr 8, 2026 Feb 29, 2024 N/A· v4 5.3 MEDIUM· v3 N/A· v2 The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'submit_review' function in all versions up to, and including, 5.38.12...Show more |
1Cusrev 1Customer Reviews For Woocommerce Apr 28, 2026 Feb 28, 2024 N/A· v4 4.3 MEDIUM· v3 N/A· v2 Missing Authorization vulnerability in CusRev Customer Reviews for WooCommerce.This issue affects Customer Reviews for WooCommerce: from n/a through 5.38.1. |
1Cusrev 1Customer Reviews For Woocommerce Jun 2, 2025 Jan 16, 2024 N/A· v4 5.4 MEDIUM· v3 N/A· v2 The Customer Reviews for WooCommerce WordPress plugin before 5.17.0 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow...Show more |
1Cusrev 1Customer Reviews For Woocommerce Apr 8, 2026 Jan 11, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the ivole_import_upload_csv AJAX action in all versions up to, and including, 5.38....Show more |
1Cusrev 1Customer Reviews For Woocommerce Mar 21, 2025 Feb 13, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 The Customer Reviews for WooCommerce WordPress plugin before 5.16.0 does not validate one of its shortcode attribute, which could allow users with a contributor role and above to include arbitrary files via a traversal a...Show more |
1Cusrev 1Customer Reviews For Woocommerce Nov 21, 2024 Sep 23, 2022 N/A· v4 7.5 HIGH· v3 N/A· v2 Unauthenticated Sensitive Information Disclosure vulnerability in Customer Reviews for WooCommerce plugin <= 5.3.5 at WordPress |
1Cusrev 1Customer Reviews For Woocommerce Nov 21, 2024 Sep 23, 2022 N/A· v4 8.8 HIGH· v3 N/A· v2 Cross-Site Request Forgery (CSRF) vulnerability in Customer Reviews for WooCommerce plugin <= 5.3.5 at WordPress. |
1Cusrev 1Customer Reviews For Woocommerce Nov 21, 2024 Sep 23, 2022 N/A· v4 8.8 HIGH· v3 N/A· v2 Authenticated (subscriber+) Broken Access Control vulnerability in Customer Reviews for WooCommerce plugin <= 5.3.5 at WordPress. |