VYPR

Personalize Woocommerce Cart Page

by WordPress

Source repositories

CVEs (2)

  • CVE-2019-5979HigJul 5, 2019
    risk 0.57cvss 8.8epss 0.01

    Cross-site request forgery (CSRF) vulnerability in Personalized WooCommerce Cart Page 2.4 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors.

  • CVE-2024-12826MedJan 25, 2025
    risk 0.28cvss 4.3epss 0.00

    The GoHero Store Customizer for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the wooh_action_settings_save_frontend() function in all versions up to, and including, 3.5. This makes it possible for…