Filter
-Infinity
0

Software

woocommerce
36
woocommerce returns and warranty requests
5
woocommerce multiple customer addresses & shipping
4
woocommerce pre-orders
4
woocommerce active products tables for woocommerce
3
woocommerce customers manager
3
woocommerce stripe payment gateway
3
woocommerce box office
2
woocommerce dn shipping by weight
2
woocommerce gift cards
2
woocommerce paypal checkout payment gateway
2
woocommerce payu india payment gateway
2
woocommerce product add-ons
2
woocommerce product input fields for woocommerce
2
woocommerce return refund and exchange for woocommerce
2
woocommerce sms alert order notifications
2
woocommerce additional fees on checkout
1
woocommerce brands plugin
1
woocommerce bulgarisation
1
woocommerce cart count shortcode
1
woocommerce check pincode/zipcode for shipping
1
woocommerce cost & profit calculator
1
woocommerce crm & accounting plugin
1
woocommerce custom checkout fields editor
1
woocommerce custom woocommerce checkout fields editor
1
woocommerce drag and drop multiple file upload for woocommerce
1
woocommerce ean for woocommerce
1
woocommerce estimate and quote
1
woocommerce file uploads addon
1
woocommerce food - restaurant menu & food ordering
1
woocommerce icons for features
1
woocommerce multivendor marketplace
1
woocommerce one page checkout
1
woocommerce order attachments for woocommerce
1
woocommerce order export & order import for woocommerce
1
woocommerce order search
1
woocommerce order status change notifier
1
woocommerce paypal payments
1
woocommerce pos
1
woocommerce pos plugin
1
woocommerce product recommendations
1
woocommerce product vendors
1
woocommerce recover abandoned cart
1
woocommerce sidebar manager to woosidebars converter
1
woocommerce sku generator
1
woocommerce subscriptions
1
woocommerce support ticket system
1
woocommerce wishlist for woocommerce
1
woocommerce wooframework tweaks
1

WordPress WooCommerce Estimate and QuoteWordPress WooCommerce Estimate and Quote plugin <= 1.0.2.5 - Reflected Cross Site Scripting (XSS) vulnerability

7.1
EPSS
0.03%
First published (updated )

WooCommerce DN Shipping by WeightWordPress DN Shipping by Weight for WooCommerce Plugin <= 1.2 - Reflected Cross Site Scripting (XSS) vulnerability

7.1
EPSS
0.03%
First published (updated )

WooCommerce Drag and Drop Multiple File Upload for WooCommerceDrag and Drop Multiple File Upload for WooCommerce <= 1.1.4 - Unauthenticated Arbitrary File Move

First published (updated )

WordPress Product Import Export for WooCommerceProduct Import Export for WooCommerce <= 2.5.0 - Authenticated (Admin+) PHP Object Injection via form_data Parameter

7.2
First published (updated )

WordPress Product Import Export for WooCommerceProduct Import Export for WooCommerce <= 2.5.0 - Directory Traversal to Authenticated (Administrator+) Limited Arbitrary File Deletion via admin_log_page Function

2.7
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

WordPress Product Import Export for WooCommerceProduct Import Export for WooCommerce <= 2.5.0 - Authenticated (Administrator+) Server-Side Request Forgery via validate_file Function

7.6
First published (updated )

WordPress Product Import Export for WooCommerceProduct Import Export for WooCommerce <= 2.5.0 - Directory Traversal to Authenticated (Administrator+) Limited Arbitrary File Read via download_file Function

First published (updated )

WooCommerce Active Products Tables for WooCommerceActive Products Tables for WooCommerce <= 1.0.6.7 - Unauthenticated Arbitrary Filter Call

7.3
First published (updated )

WooCommerce Multivendor MarketplaceWooCommerce Multivendor Marketplace – REST API <= 1.6.2 - Authenticated (Subscriber+) SQL Injection

First published (updated )

WebToffee Order Export & Order Import for WooCommerceOrder Export & Order Import for WooCommerce <= 2.6.0 - Directory Traversal to Authenticated (Administrator+) Limited Arbitrary File Read via download_file Function

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

WebToffee Order Export & Order Import for WooCommerceOrder Export & Order Import for WooCommerce <= 2.6.0 - Authenticated (Admin+) PHP Object Injection via form_data Parameter

7.2
First published (updated )

WooCommerce Order Export & Order Import for WooCommerceOrder Export & Order Import for WooCommerce <= 2.6.0 - Directory Traversal to Authenticated (Administrator+) Limited Arbitrary File Deletion via admin_log_page Function

First published (updated )

NP Quote Request for WooCommerceNP Quote Request for WooCommerce <= 1.9.179 - Insecure Direct Object Reference to Unauthenticated Sensitive Information Disclosure

7.5
First published (updated )

WebToffee Order Export & Order Import for WooCommerceOrder Export & Order Import for WooCommerce <= 2.6.0 - Authenticated (Administrator+) Server-Side Request Forgery via validate_file Function

7.6
First published (updated )

WooCommerceeasy-broken-link-checker <= 9.0.2 - Admin+ Stored XSS

3.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

WooCommerceeasy-broken-link-checker <= 9.0.2 - Bulk Actions via CSRF

First published (updated )

WooCommerce Product Input Fields for WooCommerceProduct Input Fields for WooCommerce <= 1.12.0 - Unauthenticated Limited File Upload

First published (updated )

Print Invoice & Delivery Notes for WooCommercePrint Invoice & Delivery Notes for WooCommerce <= 5.4.1 - Unauthenticated Sensitive Information Exposure Through Unprotected Directory

First published (updated )

WooCommerce Wishlist for WooCommerceWishlist for WooCommerce: Multi Wishlists Per Customer <= 3.1.7 - Cross-Site Request Forgery to Cross-Site Scriping via Wishlist Name

First published (updated )

ThemeHigh Email Customizer for WooCommerceWooMail - WooCommerce Email Customizer <= 3.0.34 - Authenticated (Subscriber+) Missing Authorization to SQL Injection

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

WooCommerce Recover Abandoned CartWooCommerce Recover Abandoned Cart <= 24.3.0 - Unauthenticated PHP Object Injection

8.1
First published (updated )

Wpswings Wallet System For WoocommerceWallet System for WooCommerce – Wallet, Wallet Cashback, Refunds, Partial Payment, Wallet Restriction <= 2.6.2 - Missing Authorization

First published (updated )

Wpswings Wallet System For WoocommerceWallet System for WooCommerce – Wallet, Wallet Cashback, Refunds, Partial Payment, Wallet Restriction <= 2.6.2 - Cross-Site Request Forgery

First published (updated )

WooCommerce SKU GeneratorSKU Generator for WooCommerce <= 1.6.2 - Reflected Cross-Site Scripting

First published (updated )

WOOCS – WooCommerce Currency SwitcherCurrency Switcher for WooCommerce <= 2.16.2 - Reflected Cross-Site Scripting

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Wpbranch Tabs For WoocommerceTabs for WooCommerce <= 1.0.0 - Authentiated (Shop Manager+) PHP Object Injection in product_has_custom_tabs

7.2
First published (updated )

WooCommerce Order Attachments for WooCommerceOrder Attachments for WooCommerce <= 2.5.1 - Unauthenticated Sensitive Information Exposure Through Unprotected Directory

7.5
First published (updated )

WooCommerceWooCommerce Ultimate Gift Card <= 2.6.0 - Unauthenticated Arbitrary File Upload

First published (updated )

WooCommerce Cart Count ShortcodeWooCommerce Cart Count Shortcode < 1.1.0 - Contributor+ XSS

First published (updated )

WooCommerce Food - Restaurant Menu & Food OrderingWooCommerce Food - Restaurant Menu & Food ordering <= 3.3.2 - Unauthenticated Arbitrary Shortcode Execution via ids

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203