VYPR

Yotpo

by WordPress

CVEs (1)

  • CVE-2024-9356MedNov 15, 2024
    risk 0.40cvss 6.1epss 0.01

    The Yotpo: Product & Photo Reviews for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'yotpo_user_email' and 'yotpo_user_name' parameters in all versions up to, and including, 1.7.9 due to insufficient input sanitization and output…