| CVE-2024-4857 | FS Product Inquiry <= 1.1.1 - Unauthenticated Stored XSS | Unknown | FS Product Inquiry | - | - | 2024-06-04 06:00:03 | Deep Dive |
| CVE-2024-32724 | WordPress SharkDropship and Affiliate for AliExpress, eBay, Amazon, Etsy plugin <= 2.1.1 - Arbitrary Content Deletion vulnerability | Woo product importer | Sharkdropship dropshipping for Aliexpress, eBay, Amazon, etsy | High | 7.5 | 2024-05-09 12:20:00 | Deep Dive |
| CVE-2024-0904 | Fancy Product Designer < 6.1.81 - Admin+ Cross Site Scripting | Unknown | Fancy Product Designer | - | - | 2024-05-06 06:00:01 | Deep Dive |
| CVE-2024-1679 | Print Labels with Barcodes. Create price tags, product labels, order labels for WooCommerce <= 3.4.6 - Authenticated(Subscriber+) Stored Cross-Site Scripting via Templates | ukrsolution | Print Labels with Barcodes. Create price tags, product labels, order labels for WooCommerce | Medium | 6.4 | 2024-05-02 16:52:35 | Deep Dive |
| CVE-2024-1677 | Print Labels with Barcodes. Create price tags, product labels, order labels for WooCommerce <= 3.4.6 - Improper Authorization | ukrsolution | Print Labels with Barcodes. Create price tags, product labels, order labels for WooCommerce | Medium | 6.3 | 2024-05-02 16:52:14 | Deep Dive |
| CVE-2024-3962 | Product Addons & Fields for WooCommerce <= 32.0.18 - Unauthenticated Arbitrary File Upload via ppom_upload_file | themeisle | PPOM – Product Addons & Custom Fields for WooCommerce | Critical | 9.8 | 2024-04-26 08:29:20 | Deep Dive |
| CVE-2024-0905 | Fancy Product Designer < 6.1.8 - Reflected Cross Site Scripting | Unknown | Fancy Product Designer | - | - | 2024-04-26 05:00:02 | Deep Dive |
| CVE-2024-32558 | WordPress eCommerce Product Catalog plugin <= 3.3.32 - Cross Site Scripting (XSS) vulnerability | impleCode | eCommerce Product Catalog | High | 7.1 | 2024-04-18 10:08:48 | Deep Dive |
| CVE-2024-32513 | WordPress Product Feed PRO for WooCommerce plugin <= 13.3.1 - Sensitive Data Exposure vulnerability | AdTribes.io | Product Feed PRO for WooCommerce | Medium | 5.3 | 2024-04-17 08:03:24 | Deep Dive |
| CVE-2024-32520 | WordPress WPC Grouped Product for WooCommerce plugin <= 4.4.2 - Broken Access Control vulnerability | WPClever | WPC Grouped Product for WooCommerce | Medium | 4.3 | 2024-04-17 07:33:03 | Deep Dive |
| CVE-2024-21091 | Oracle Supply Chain Products Suite 安全漏洞 | Oracle Corporation | Agile Product Lifecycle Management for Process | Medium | 6.5 | 2024-04-16 21:26:29 | Deep Dive |
| CVE-2024-21092 | Oracle Supply Chain Products Suite 安全漏洞 | Oracle Corporation | Agile Product Lifecycle Management for Process | High | 8.1 | 2024-04-16 21:26:29 | Deep Dive |
| CVE-2024-31431 | WordPress Product Input Fields for WooCommerce plugin <= 1.7.0 - Cross Site Request Forgery (CSRF) vulnerability | Tyche Softwares | Product Input Fields for WooCommerce | Medium | 4.3 | 2024-04-15 09:31:56 | Deep Dive |
| CVE-2024-31920 | WordPress Currency per Product for WooCommerce plugin <= 1.6.0 - Cross Site Request Forgery (CSRF) vulnerability | Tyche Softwares | Currency per Product for WooCommerce | Medium | 4.3 | 2024-04-15 09:27:55 | Deep Dive |
| CVE-2024-31921 | WordPress Ultimate Product Catalog plugin <= 5.2.15 - Cross Site Request Forgery (CSRF) vulnerability | Etoile Web Design | Ultimate Product Catalogue | Medium | 4.3 | 2024-04-15 09:27:07 | Deep Dive |
| CVE-2024-31940 | WordPress Extra Product Options Builder for WooCommerce plugin <= 1.2.104 - Cross Site Request Forgery (CSRF) vulnerability | RedNao | Extra Product Options Builder for WooCommerce | Medium | 4.3 | 2024-04-15 09:15:47 | Deep Dive |
| CVE-2024-32437 | WordPress eCommerce Product Catalog plugin <= 3.3.28 - Cross Site Request Forgery (CSRF) vulnerability | impleCode | eCommerce Product Catalog | Medium | 4.3 | 2024-04-15 08:07:26 | Deep Dive |
| CVE-2024-32087 | WordPress Product Feed on WooCommerce for Google, Awin, Shareasale, Bing, and More plugin <= 3.5.7 - Auth. SQL Injection (SQLi) vulnerability | ExportFeed.com | Product Feed on WooCommerce for Google | High | 7.6 | 2024-04-15 07:40:55 | Deep Dive |
| CVE-2023-52144 | WordPress Product Feed Manager plugin <= 7.3.15 - Directory Traversal vulnerability | RexTheme | Product Feed Manager | Medium | 5.5 | 2024-04-15 07:11:33 | Deep Dive |
| CVE-2024-0902 | Fancy Product Designer < 6.1.81 - Admin+ Cross Site Scripting via Product Title | Unknown | Fancy Product Designer | - | - | 2024-04-15 05:00:02 | Deep Dive |