SecAlerts
h

husky

Security Risk Profile

48
/100
medium

Security Risk Score

Comprehensive risk assessment based on 11 vulnerabilities, EPSS scores, exploitation status, and remediation availability.

📅 Data spans from March 15, 2024 to present

11
Total CVEs
6
Critical+High
0
Exploited
3
Unpatched

Threat Assessment

Avg CVSS
7.2
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
3
Critical/High
Risk Level
48/100
medium
🆕 1Fresh (<7d)📈 1 in Last 30 Days

Severity Distribution

Critical
2
High
4
Medium
5
Low
0

Exploit Likelihood

>50% chance
0
20-50%
0
5-20%
0
<5%
4

Age Distribution

Common Weaknesses (CWE)

1
XSS
3
2
SQL Injection
3
3
Path Traversal
2

Most Affected Products

1. HUSKY Products Filter Professional for WooCommerce9
2. Pluginus Husky - Products Filter Professional For Woocommerce Wordpress7
3. HUSKY Products Filter for WooCommerce Professional2

Recent Vulnerabilities

See more →
CVE-2026-18562
CVSS 6.1medium

HUSKY <= 1.4.3 - Reflected Cross-Site Scripting

Sep 11, 2026🔧 No Patch
CVE-2026-15244
CVSS 7.2high

HUSKY - Products Filter Professional for WooCommerce < 1.4.1 - Shop Manager+ Local File Inclusion via meta_filter search_view

Aug 1, 2026🔧 No Patch
CVE-2025-13109
CVSS 4.3medium

HUSKY – Products Filter Professional for WooCommerce <= 1.3.7.2 - Authenticated (Subscriber+) Insecure Direct Object Reference via 'woof_add_query/woof_remove_query'

Dec 3, 2025🔧 No Patch
CVE-2025-11735
CVSS 7.5high

HUSKY – Products Filter Professional for WooCommerce <= 1.3.7.1 - Unauthenticated SQL Injection via `phrase` Parameter

Oct 28, 2025🔧 No Patch
CVE-2025-1661
CVSS 9.8critical

HUSKY – Products Filter Professional for WooCommerce <= 1.3.6.5 - Unauthenticated Local File Inclusion

Mar 11, 2025
CVE-2024-7491
CVSS 5.3EPSS 0%medium

HUSKY – Products Filter Professional for WooCommerce <= 1.3.6.1 - Insecure Direct Object Reference to Unsubscribe

Sep 25, 2024
CVE-2024-6457
CVSS 9.8EPSS 0%critical

HUSKY - Products Filter Professional for WooCommerce <= 1.3.6 - Unauthenticated Time-Based SQL Injection

Jul 16, 2024🔧 No Patch
CVE-2024-5039
CVSS 6.4EPSS 0%medium

HUSKY – Products Filter Professional for WooCommerce <= 1.3.5.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode

May 29, 2024🔧 No Patch
CVE-2024-3061
CVSS 7.2EPSS 0%high

HUSKY – Products Filter Professional for WooCommerce <= 1.3.5.2 - Authenticated (Admin+) Local File Inclusion

Mar 29, 2024
CVE-2024-1795
CVSS 8.8high

HUSKY – Products Filter for WooCommerce Professional <= 1.3.5.2 - Authenticated (Contributor+) SQL Injection

Mar 15, 2024

Monitor husky in Real-Time

Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.

Powered bySecAlerts

Monitor Your Software Stack in Real-Time

Get instant alerts when vulnerabilities are discovered in your software stack. Stay ahead of security threats with SecAlerts.

© 2026 SecAlerts Pty Ltd. All rights reserved.