CVEs (3)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Shapedplugin 1Product Slider For Woocommerce Jan 29, 2025 May 8, 2023 N/A· v4 5.4 MEDIUM· v3 N/A· v2 The Product Slider For WooCommerce Lite WordPress plugin through 1.1.7 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could al...Show more |
1Shapedplugin 1Product Slider For Woocommerce Apr 2, 2025 Jan 23, 2023 N/A· v4 5.4 MEDIUM· v3 N/A· v2 The Product Slider for WooCommerce WordPress plugin before 2.6.4 does not validate and escape some of its shortcode attributes before outputting them back in the page, which could allow users with a role as low as contri...Show more |
1Shapedplugin 1Product Slider For Woocommerce Nov 21, 2024 Aug 22, 2022 N/A· v4 4.3 MEDIUM· v3 N/A· v2 The Product Slider for WooCommerce WordPress plugin before 2.5.7 has flawed CSRF checks and lack authorisation in some of its AJAX actions, allowing any authenticated users, such as subscriber to call them. One in partic...Show more |