| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-12253 | Simple Ecommerce Shopping Cart Plugin- Sell products through Paypal <= 3.1.2 - Missing Authorization to Authenticated (Subscriber+) Settings Update / Data Access | nshowketgmailcom | Simple Ecommerce Shopping Cart Plugin- Sell products through Paypal | Medium | 5.4 | 2024-12-07 09:26:01 | Deep Dive |
| CVE-2024-11687 | Next-Cart Store to WooCommerce Migration <= 3.9.2 - Reflected Cross-Site Scripting | martinnguyen1990 | Next-Cart Store to WooCommerce Migration | Medium | 6.1 | 2024-12-06 08:24:57 | Deep Dive |
| CVE-2024-53714 | WordPress Continue Shopping From Cart plugin <= 1.3 - CSRF to Stored XSS vulnerability | Irish_Cathal | Continue Shopping From Cart | High | 7.1 | 2024-12-02 13:48:47 | Deep Dive |
| CVE-2024-49697 | WordPress Sunshine Photo Cart plugin <= 3.2.9 - Broken Access Control vulnerability | sunshinephotocart | Sunshine Photo Cart | Medium | 4.3 | 2024-11-19 16:30:39 | Deep Dive |
| CVE-2024-9186 | Automation By Autonami < 3.3.0 - Unauthenticated SQLi | Unknown | Recover WooCommerce Cart Abandonment, Newsletter, Email Marketing, Marketing Automation By FunnelKit | - | - | 2024-11-14 06:00:11 | Deep Dive |
| CVE-2024-9178 | XT Floating Cart for WooCommerce <= 2.8.2 - Authenticated (Author+) Stored Cross-Site Scripting via SVG File Upload | xplodedthemes | XT Floating Cart for WooCommerce | Medium | 6.4 | 2024-11-05 11:00:49 | Deep Dive |
| CVE-2024-47314 | WordPress Sunshine Photo Cart plugin <= 3.2.8 - Broken Access Control vulnerability | sunshinephotocart | Sunshine Photo Cart | High | 7.1 | 2024-11-01 14:18:44 | Deep Dive |
| CVE-2024-44038 | WordPress Sunshine Photo Cart plugin <= 3.2.9 - Broken Access Control vulnerability | sunshinephotocart | Sunshine Photo Cart | Medium | 5.3 | 2024-11-01 14:18:42 | Deep Dive |
| CVE-2024-43136 | WordPress Sunshine Photo Cart plugin <= 3.2.1 - Broken Access Control vulnerability | sunshinephotocart | Sunshine Photo Cart | Medium | 4.3 | 2024-11-01 14:17:47 | Deep Dive |
| CVE-2024-49640 | WordPress ACL Floating Cart for WooCommerce plugin <= 0.9 - Reflected Cross Site Scripting (XSS) vulnerability | AmaderCode Lab | ACL Floating Cart for WooCommerce | High | 7.1 | 2024-10-29 12:39:19 | Deep Dive |
| CVE-2024-50463 | WordPress Sunshine Photo Cart plugin <= 3.2.9 - Open Redirection vulnerability | sunshinephotocart | Sunshine Photo Cart | Medium | 4.7 | 2024-10-28 12:33:32 | Deep Dive |
| CVE-2024-49296 | WordPress Custom Add to Cart Button Label and Link plugin <= 1.6.1 - Cross Site Scripting (XSS) vulnerability | JC | Custom Add to Cart Button Label and Link | Medium | 6.5 | 2024-10-17 19:05:36 | Deep Dive |
| CVE-2022-4974 | Freemius SDK <= 2.4.2 - Missing Authorization Checks | dashlabsltd | YASR – Yet Another Star Rating Plugin for WordPress | Medium | 6.3 | 2024-10-16 06:43:30 | Deep Dive |
| CVE-2024-8716 | XT Ajax Add To Cart for WooCommerce <= 1.1.2 - Reflected Cross-Site Scripting | xplodedthemes | XT Ajax Add To Cart for WooCommerce | Medium | 6.1 | 2024-09-24 01:56:46 | Deep Dive |
| CVE-2024-43971 | WordPress Sunshine Photo Cart plugin <= 3.2.5 - Cross Site Scripting (XSS) vulnerability | sunshinephotocart | Sunshine Photo Cart | High | 7.1 | 2024-09-17 23:32:00 | Deep Dive |
| CVE-2024-5762 | Zen Cart findPluginAdminPage Local File Inclusion Remote Code Execution Vulnerability | Zen Cart | Zen Cart | - | - | 2024-08-21 16:15:27 | Deep Dive |
| CVE-2024-7827 | Shopping Cart & eCommerce Store <= 5.7.2 - Authenticated (Contributor+) SQL Injection via model_number Parameter | levelfourstorefront | Shopping Cart & eCommerce Store | High | 8.8 | 2024-08-20 02:03:18 | Deep Dive |
| CVE-2024-6134 | WP eStore < 8.5.6 - Reflected XSS in Product Editing | Unknown | wp-cart-for-digital-products | - | - | 2024-08-10 06:00:04 | Deep Dive |
| CVE-2024-6136 | WP eStore < 8.5.6 - Settings Reset via CSRF | Unknown | wp-cart-for-digital-products | - | - | 2024-08-09 06:00:03 | Deep Dive |
| CVE-2024-6133 | WP eStore < 8.5.6 - Reflected XSS in Customer Search | Unknown | wp-cart-for-digital-products | - | - | 2024-08-09 06:00:02 | Deep Dive |