VYPR

Wishlist and Save for later for Woocommerce

by WordPress

CVEs (2)

  • CVE-2024-13718Feb 18, 2025
    risk 0.00cvss epss 0.00

    The Flexible Wishlist for WooCommerce – Ecommerce Wishlist & Save for later plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.2.26. This is due to missing or incorrect nonce validation on several functions. This makes it…

  • CVE-2024-10519Nov 23, 2024
    risk 0.00cvss epss 0.00

    The Wishlist for WooCommerce: Multi Wishlists Per Customer PRO plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'wtab' parameter in versions 3.0.8 to 3.1.2 due to insufficient input sanitization and output escaping. This makes it possible for…