VYPR

Woocommerce Products Filter

by Pluginus

CVEs (2)

  • CVE-2024-11400MedNov 19, 2024
    risk 0.40cvss 6.1epss 0.00

    The HUSKY – Products Filter Professional for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the really_curr_tax parameter in all versions up to, and including, 1.3.6.3 due to insufficient input sanitization and output escaping. This makes…

  • CVE-2021-25085MedFeb 1, 2022
    risk 0.40cvss 6.1epss 0.02

    The WOOF WordPress plugin before 1.2.6.3 does not sanitise and escape the woof_redraw_elements before outputing back in an admin page, leading to a Reflected Cross-Site Scripting