This project will be discontinued after December 13, 2021. [more]
Product:
Yith_woocommerce_product_add\-Ons
(Yithemes)
Repositories
Unknown:
This might be proprietary software.
#Vulnerabilities
4
Date
Id
Summary
Products
Score
Patch
Annotated
2024-10-28
CVE-2024-50448
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in YITH YITH WooCommerce Product Add-Ons allows Reflected XSS.This issue affects YITH WooCommerce Product Add-Ons: from n/a through 4.14.1.
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability in YITH YITH WooCommerce Product Add-Ons allows Code Injection.This issue affects YITH WooCommerce Product Add-Ons: from n/a through 4.9.2.
Deserialization of Untrusted Data vulnerability in YITH YITH WooCommerce Product Add-Ons.This issue affects YITH WooCommerce Product Add-Ons: from n/a through 4.3.0.