VYPR

XPlainer

by XPlainer

CVEs (2)

  • CVE-2024-5669MedJul 9, 2024
    risk 0.35cvss 6.4epss 0.00

    The XPlainer – WooCommerce Product FAQ [WooCommerce Accordion FAQ Plugin] plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'ffw_activate_template' function in all versions up to, and including, 1.7.0. This makes…

  • CVE-2024-5704MedJul 9, 2024
    risk 0.21cvss 4.3epss 0.00

    The XPlainer – WooCommerce Product FAQ [WooCommerce Accordion FAQ Plugin plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on several functions (i.e. ffw_insert_new_faq, ffw_hide_discount_notice, ffw_delete_all_faqs,…