webtoffee
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 62 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from June 19, 2018 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →WebToffee WooCommerce PDF Invoices, Packing Slips, Delivery Notes & Shipping Labels <= 4.9.8 - Authenticated (Subscriber+) Arbitrary File Read via 'customer_note' Parameter
WebToffee Cookie Consent < 3.5.3 - Consent Log Disclosure/Deletion, Page Creation & License Deactivation via Unprotected REST Routes
WordPress Product Import Export for WooCommerce plugin <= 2.5.6 - Broken Access Control vulnerability
WordPress Smart Coupons for WooCommerce plugin < 2.3.0 - Broken Access Control vulnerability
WordPress Comments Import & Export plugin <= 2.4.9 - Broken Access Control vulnerability
WordPress Product Feed for WooCommerce plugin <= 2.3.3 - PHP Object Injection vulnerability
WordPress WebToffee eCommerce Marketing Automation plugin <= 2.1.1 - Broken Access Control vulnerability
WordPress Product Feed for WooCommerce plugin <= 2.3.1 - Broken Access Control vulnerability
WordPress Order Export & Order Import for WooCommerce plugin <= 2.6.7 - Broken Access Control vulnerability
WordPress Smart Coupons for WooCommerce plugin <= 2.2.3 - Broken Access Control vulnerability
Monitor webtoffee in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.