WooCommerce / AutomateWoo
7 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2023-33318 | WordPress WooCommerce Follow-Up Emails Plugin <= 4.9.40 is vulnerable to Arbitrary File Upload | CRITICAL | 9.9 | Dec 20, 2023 |
| CVE-2023-32743 | WordPress AutomateWoo Plugin <= 5.7.1 is vulnerable to SQL Injection | HIGH | 7.6 | Dec 20, 2023 |
| CVE-2023-33330 | WordPress WooCommerce Follow-Up Emails Plugin <= 4.9.50 is vulnerable to SQL Injection | HIGH | 8.5 | Dec 20, 2023 |
| CVE-2023-32745 | WordPress AutomateWoo Plugin <= 5.7.1 is vulnerable to Cross Site Request Forgery (CSRF) | HIGH | 8.8 | Nov 9, 2023 |
| CVE-2023-36513 | WordPress AutomateWoo Plugin <= 5.7.5 is vulnerable to Cross Site Request Forgery (CSRF) | HIGH | 8.8 | Jul 17, 2023 |
| CVE-2023-33319 | WordPress WooCommerce Follow-Up Emails Plugin <= 4.9.40 is vulnerable to Cross Site Scripting (XSS) | HIGH | 7.1 | May 28, 2023 |
| CVE-2023-33316 | WordPress WooCommerce Follow-Up Emails (AutomateWoo) plugin <= 4.9.40 is vulnerable to Cross Site Request Forgery (CSRF) | HIGH | 8.8 | May 28, 2023 |
Showing 1 to 7 of 7 CVEs