Known vulnerabilities in Product Input Fields for WooCommerce 1.2.6
Vendor:
Tyche Softwares
Software:
Product Input Fields for WooCommerce
Version:
1.2.6
Software CPE:
cpe:2.3:a:ashokrane:product-input-fields-for-woocommerce:*:*:*:*:*:wordpress:*:*
Total vulnerabilities:
2
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
7.2
Vulnerabilities by Severity
Vulnerabilities (2)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU101059 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2024-10857 |
CWE-22 | Medium | 2.0 | 29.11.2024 |
SB2024112930 |
||
| #VU32980 - Improper Access Control |
CWE-284 | Medium | 1.2.7 | 03.08.2020 |
SB2020080304 |