| CVE-2024-37217 | WordPress Empty Cart Button for WooCommerce plugin <= 1.3.8 - Cross Site Scripting (XSS) vulnerability | ProWCPlugins | Empty Cart Button for WooCommerce | Medium | 6.5 | 2024-07-22 09:24:46 | Deep Dive |
| CVE-2024-6075 | WP eStore < 8.5.5 - Coupon Deletion via CSRF | Unknown | wp-cart-for-digital-products | 中危 | - | 2024-07-15 06:00:06 | Deep Dive |
| CVE-2024-6076 | WP eStore < 8.5.5 - Reflected XSS in Category Editing | Unknown | wp-cart-for-digital-products | 中危 | - | 2024-07-15 06:00:06 | Deep Dive |
| CVE-2024-6073 | WP eStore < 8.5.5 - Reflected XSS in Discount Editing | Unknown | wp-cart-for-digital-products | 中危 | - | 2024-07-15 06:00:05 | Deep Dive |
| CVE-2024-6074 | WP eStore < 8.5.5 - Reflected XSS in Customer Editing | Unknown | wp-cart-for-digital-products | 中危 | - | 2024-07-15 06:00:05 | Deep Dive |
| CVE-2024-6072 | WP eStore < 8.5.5 - Reflected XSS via $_SERVER['REQUEST_URI'] | Unknown | wp-cart-for-digital-products | 中危 | - | 2024-07-15 06:00:04 | Deep Dive |
| CVE-2024-37202 | WordPress Ultimate Custom Add To Cart Button (Ajax) For WooCommerce by Binary Carpenter plugin <= 1.222.17 - Broken Access Control to XSS vulnerability | BinaryCarpenter | Ultimate Custom Add To Cart Button (Ajax) For WooCommerce by Binary Carpenter | Medium | 6.5 | 2024-07-12 13:30:29 | Deep Dive |
| CVE-2024-5448 | PayPal Pay Now, Buy Now, Donation and Cart Buttons Shortcode <= 1.7 - Contributor+ Stored XSS | Unknown | PayPal Pay Now, Buy Now, Donation and Cart Buttons Shortcode | 中危 | - | 2024-06-21 06:00:07 | Deep Dive |
| CVE-2024-5447 | PayPal Pay Now, Buy Now, Donation and Cart Buttons Shortcode <= 1.7 - Admin+ Stored XSS | Unknown | PayPal Pay Now, Buy Now, Donation and Cart Buttons Shortcode | 中危 | - | 2024-06-21 06:00:06 | Deep Dive |
| CVE-2024-3602 | Pop ups, Exit intent popups, email popups, banners, bars, countdowns and cart savers – Promolayer <= 1.1.0 - Missing Authorization | promolayerpopupbuilder | Promolayer – Popup Builder & Abandonment Preventer | Medium | 4.3 | 2024-06-20 02:08:19 | Deep Dive |
| CVE-2024-5155 | Inquiry Cart <= 3.4.2 - Stored XSS via CSRF | Unknown | Inquiry cart | - | - | 2024-06-14 06:00:05 | Deep Dive |
| CVE-2024-3065 | PayPal Pay Now, Buy Now, Donation and Cart Buttons Shortcode <= 1.7 - Authenticated (Admin+) Stored Cross-Site Scripting | mohsinrasool | PayPal Pay Now, Buy Now, Donation and Cart Buttons Shortcode | Medium | 4.4 | 2024-05-23 01:56:20 | Deep Dive |
| CVE-2024-4826 | SQL injection vulnerability in Simple PHP Shopping Cart | Asaancart | Simple PHP Shopping Cart | Critical | 9.8 | 2024-05-16 12:07:02 | Deep Dive |
| CVE-2024-4213 | Shopping Cart & eCommerce Store <= 5.6.4 - Sensitive Information Exposure | levelfourstorefront | Shopping Cart & eCommerce Store | Medium | 5.3 | 2024-05-10 21:32:42 | Deep Dive |
| CVE-2024-3211 | Shopping Cart & eCommerce Store <= 5.6.3 - Authenticated (Contributor+) SQL Injection | levelfourstorefront | Shopping Cart & eCommerce Store | High | 8.8 | 2024-04-12 09:30:15 | Deep Dive |
| CVE-2024-2456 | Ecwid Ecommerce Shopping Cart <= 6.12.10 - Authenticated(Contributor+) Stored Cross-Site Scripting via Shortcode | ecwid | Ecwid by Lightspeed Ecommerce Shopping Cart | Medium | 6.4 | 2024-04-09 18:59:28 | Deep Dive |
| CVE-2024-2322 | WooCommerce Cart Abandonment Recovery < 1.2.27 - Templates/Abandoned Orders Deletion via CSRF | Unknown | WooCommerce Cart Abandonment Recovery | 中危 | - | 2024-04-03 05:00:02 | Deep Dive |
| CVE-2024-31100 | WordPress Popup Cart Lite for WooCommerce plugin <= 1.1 - Cross Site Request Forgery (CSRF) vulnerability | Festi-Team | Popup Cart Lite for WooCommerce | Medium | 5.4 | 2024-03-31 18:26:31 | Deep Dive |
| CVE-2024-30221 | WordPress Sunshine Photo Cart plugin <= 3.1.1 - PHP Object Injection vulnerability | sunshinephotocart | Sunshine Photo Cart | Medium | 5.4 | 2024-03-28 05:07:42 | Deep Dive |
| CVE-2024-30194 | WordPress Sunshine Photo Cart plugin <= 3.1.1 - Reflected Cross Site Scripting (XSS) vulnerability | sunshinephotocart | Sunshine Photo Cart | High | 7.1 | 2024-03-27 06:40:13 | Deep Dive |