CVEs (4)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Xootix 4Login/signup Popup Otp Login Woocommerce & Gravity FormsSide Cart Woocommerce+1 moreApr 8, 2026 Jun 6, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 Multiple plugins for WordPress utilizing the XootiX Framework are vulnerable to unauthorized modification of data due to a missing capability check on the 'import_settings' function in various versions. This makes it pos...Show more |
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in XootiX Side Cart Woocommerce (Ajax) plugin <= 2.2 versions. |
Cross-Site Request Forgery (CSRF) vulnerability in XootiX Side Cart Woocommerce (Ajax) < 2.1 versions. |
1Xootix 3Login/signup Popup Side Cart WoocommerceWaitlist WoocommerceNov 21, 2024 Jan 18, 2022 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 The Login/Signup Popup, Waitlist Woocommerce ( Back in stock notifier ), and Side Cart Woocommerce (Ajax) WordPress plugins by XootiX are vulnerable to Cross-Site Request Forgery via the save_settings function found in t...Show more |