| CVE-2022-4888 | Multiple Plugins from Addify - Multiple CSRF | Unknown | Checkout Fields Manager | 中危 | - | 2023-07-31 09:37:33 | Deep Dive |
| CVE-2023-37894 | WordPress Variation Images Gallery for WooCommerce Plugin <= 2.3.3 is vulnerable to Cross Site Scripting (XSS) | RadiusTheme | Variation Images Gallery for WooCommerce | High | 7.1 | 2023-07-27 14:34:43 | Deep Dive |
| CVE-2023-37975 | WordPress Variation Swatches for WooCommerce Plugin <= 2.3.7 is vulnerable to Cross Site Scripting (XSS) | RadiusTheme | Variation Swatches for WooCommerce | High | 7.1 | 2023-07-27 14:25:33 | Deep Dive |
| CVE-2023-33925 | WordPress WooCommerce Product Categories Selection Widget Plugin <= 2.0 is vulnerable to Cross Site Scripting (XSS) | PluginForage | WooCommerce Product Categories Selection Widget | High | 7.1 | 2023-07-25 12:42:37 | Deep Dive |
| CVE-2023-36383 | WordPress Event Manager for WooCommerce Plugin <= 3.9.5 is vulnerable to Cross Site Scripting (XSS) | MagePeople Team | Event Manager and Tickets Selling Plugin for WooCommerce | Medium | 5.9 | 2023-07-18 14:22:14 | Deep Dive |
| CVE-2023-36514 | WordPress WooCommerce Ship to Multiple Addresses Plugin <= 3.8.5 is vulnerable to Cross Site Request Forgery (CSRF) | WooCommerce | Shipping Multiple Addresses | Medium | 6.5 | 2023-07-17 14:30:41 | Deep Dive |
| CVE-2023-36513 | WordPress AutomateWoo Plugin <= 5.7.5 is vulnerable to Cross Site Request Forgery (CSRF) | WooCommerce | AutomateWoo | Medium | 5.4 | 2023-07-17 14:26:48 | Deep Dive |
| CVE-2023-36511 | WordPress WooCommerce Order Barcodes Plugin <= 1.6.4 is vulnerable to Cross Site Request Forgery (CSRF) | WooCommerce | WooCommerce Order Barcodes | Medium | 4.3 | 2023-07-17 14:19:39 | Deep Dive |
| CVE-2023-35880 | WordPress WooCommerce Brands Plugin <= 1.6.49 is vulnerable to Cross Site Request Forgery (CSRF) | WooCommerce | WooCommerce Brands | Medium | 5.4 | 2023-07-17 13:40:20 | Deep Dive |
| CVE-2023-2329 | WooCommerce Google Sheet Connector < 1.3.6 - Access Code Update via CSRF | Unknown | WooCommerce Google Sheet Connector | 高危 | - | 2023-07-17 13:29:49 | Deep Dive |
| CVE-2023-3525 | WordPress Plugin Getnet Argentina para Woocommerce 安全漏洞 | wanderlustcodes | Getnet Argentina para Woocommerce | High | 7.5 | 2023-07-12 04:38:44 | Deep Dive |
| CVE-2021-4414 | Abandoned Cart Lite for WooCommerce <= 5.8.5 - Cross-Site Request Forgery Bypass | tychesoftwares | Abandoned Cart Lite for WooCommerce | Medium | 4.3 | 2023-07-12 03:40:44 | Deep Dive |
| CVE-2021-4409 | WooCommerce Etsy Integration <= 3.3.1 - Cross-Site Request Forgery Bypass | purpleturtlepro | Etsy Integration For WooCommerce | Medium | 4.3 | 2023-07-12 03:02:03 | Deep Dive |
| CVE-2023-35091 | WordPress WooCommerce Stock Manager plugin <= 2.10.0 - Cross Site Request Forgery (CSRF) vulnerability | storeapps | Stock Manager for WooCommerce | Medium | 4.3 | 2023-07-11 12:45:57 | Deep Dive |
| CVE-2023-34015 | WordPress Advanced Flat rate shipping Woocommerce Plugin <= 1.6.4.4 is vulnerable to Cross Site Request Forgery (CSRF) | PI Websolution | Conditional shipping & Advanced Flat rate shipping rates / Flexible shipping for WooCommerce shipping | Medium | 5.4 | 2023-07-11 08:36:04 | Deep Dive |
| CVE-2023-35912 | WordPress Potent Donations for WooCommerce Plugin <= 1.1.9 is vulnerable to Cross Site Request Forgery (CSRF) | WP Zone | Potent Donations for WooCommerce | Medium | 4.3 | 2023-07-10 15:47:34 | Deep Dive |
| CVE-2020-36748 | Dokan <= 3.0.8 - Cross-Site Request Forgery Bypass | dokaninc | Dokan: AI Powered WooCommerce Multivendor Marketplace Solution – Build Your Own Amazon, eBay, Etsy | Medium | 4.3 | 2023-07-01 05:33:29 | Deep Dive |
| CVE-2021-4395 | Abandoned Cart Recovery for WooCommerce <= 1.0.4 - Cross-Site Request Forgery Bypass | villatheme | Abandoned Cart Recovery for WooCommerce | Medium | 4.3 | 2023-07-01 05:33:24 | Deep Dive |
| CVE-2020-36744 | NotificationX <= 1.8.2 - Cross-Site Request Forgery Bypass | wpdevteam | NotificationX – FOMO, Live Sales Notification, WooCommerce Sales Popup, GDPR, Social Proof, Announcement Banner & Floating Notification Bar | Medium | 4.3 | 2023-07-01 04:26:51 | Deep Dive |
| CVE-2020-36741 | MultiVendorX – MultiVendor Marketplace Solution For WooCommerce <= 3.5.7 - Cross-Site Request Forgery Bypass | wcmp | MultiVendorX – WooCommerce Multivendor Marketplace Solutions | Medium | 4.3 | 2023-07-01 04:26:49 | Deep Dive |