| CVE-2022-43463 | WordPress Custom Product Tabs for WooCommerce plugin <= 1.7.9 - Auth. Stored Cross-Site Scripting (XSS) vulnerability | YIKES, Inc. | Custom Product Tabs for WooCommerce (WordPress plugin) | Medium | 4.8 | 2022-11-18 18:51:40 | Deep Dive |
| CVE-2022-41805 | WordPress Booster for WooCommerce plugin <= 5.6.6 - Cross-Site Request Forgery (CSRF) vulnerability | Pluggabl LLC | Booster for WooCommerce (WordPress plugin) | Medium | 5.4 | 2022-11-18 18:44:15 | Deep Dive |
| CVE-2022-45066 | WordPress WooSwipe WooCommerce Gallery plugin <= 2.0.1 - Auth. Broken Access Control vulnerability | Thrive Website Design | WooSwipe WooCommerce Gallery (WordPress plugin) | Medium | 5.4 | 2022-11-17 22:05:04 | Deep Dive |
| CVE-2022-43488 | WordPress Advanced Dynamic Pricing for WooCommerce plugin <= 4.1.5 - Cross-Site Request Forgery (CSRF) vulnerability | AlgolPlus | Advanced Dynamic Pricing for WooCommerce (WordPress plugin) | Medium | 5.4 | 2022-11-09 15:44:58 | Deep Dive |
| CVE-2022-40128 | WordPress Advanced Order Export For WooCommerce plugin <= 3.3.2 - Cross-Site Request Forgery (CSRF) vulnerability | AlgolPlus | Advanced Order Export For WooCommerce (WordPress plugin) | Medium | 4.3 | 2022-11-08 18:15:18 | Deep Dive |
| CVE-2022-43491 | WordPress Advanced Dynamic Pricing for WooCommerce plugin <= 4.1.5 - Cross-Site Request Forgery (CSRF) vulnerability | AlgolPlus | Advanced Dynamic Pricing for WooCommerce (WordPress plugin) | Medium | 5.4 | 2022-11-08 18:12:19 | Deep Dive |
| CVE-2022-3481 | WooCommerce Dropshipping < 4.4 - Unauthenticated SQLi | Unknown | WooCommerce Dropshipping | 超危 | - | 2022-11-07 00:00:00 | Deep Dive |
| CVE-2022-3536 | Role Based Pricing for WooCommerce < 1.6.3 - Subscriber+ PHAR Deserialization | Unknown | Role Based Pricing for WooCommerce | 高危 | - | 2022-11-07 00:00:00 | Deep Dive |
| CVE-2022-3537 | Role Based Pricing for WooCommerce < 1.6.2 - Subscriber+ Arbitrary File Upload | Unknown | Role Based Pricing for WooCommerce | 高危 | - | 2022-11-07 00:00:00 | Deep Dive |
| CVE-2022-3335 | Kadence WooCommerce Email Designer < 1.5.7 - Admin+ PHP Objection Injection | Unknown | Kadence WooCommerce Email Designer | 高危 | - | 2022-10-25 00:00:00 | Deep Dive |
| CVE-2022-41623 | WordPress ALD - AliExpress Dropshipping and Fulfillment for WooCommerce premium plugin <= 1.1.0 - Sensitive Data Exposure vulnerability | Villatheme | ALD - AliExpress Dropshipping and Fulfillment for WooCommerce (WordPress plugin) | High | 7.5 | 2022-10-14 19:37:10 | Deep Dive |
| CVE-2022-38134 | WordPress Customer Reviews for WooCommerce plugin <= 5.3.5 - Authenticated Broken Access Control vulnerability | CusRev | Customer Reviews for WooCommerce (WordPress plugin) | Medium | 4.3 | 2022-09-23 15:14:40 | Deep Dive |
| CVE-2022-38470 | WordPress Customer Reviews for WooCommerce plugin <= 5.3.5 - Cross-Site Request Forgery (CSRF) vulnerability | CusRev | Customer Reviews for WooCommerce (WordPress plugin) | Medium | 4.3 | 2022-09-23 15:08:23 | Deep Dive |
| CVE-2022-40194 | WordPress Customer Reviews for WooCommerce plugin <= 5.3.5 - Sensitive Information Disclosure vulnerability | CusRev | Customer Reviews for WooCommerce (WordPress plugin) | Medium | 5.3 | 2022-09-23 15:05:35 | Deep Dive |
| CVE-2022-38095 | WordPress Advanced Dynamic Pricing for WooCommerce plugin <= 4.1.3 - Cross-Site Request Forgery (CSRF) vulnerability | AlgolPlus | Advanced Dynamic Pricing for WooCommerce (WordPress plugin) | Medium | 5.4 | 2022-09-23 13:41:53 | Deep Dive |
| CVE-2022-2575 | WBW Currency Switcher for WooCommerce < 1.6.6 - Admin+ Stored XSS | Unknown | WBW Currency Switcher for WooCommerce | 中危 | - | 2022-09-16 08:40:29 | Deep Dive |
| CVE-2022-35275 | WordPress Advanced Order Export For WooCommerce plugin <= 3.3.1 - Authenticated Reflected Cross-Site Scripting (XSS) vulnerability | AlgolPlus | Advanced Order Export For WooCommerce (WordPress plugin) | Medium | 4.8 | 2022-09-09 14:39:56 | Deep Dive |
| CVE-2022-2518 | Stockists Manager for Woocommerce <= 1.0.2.1 - Cross-Site Request Forgery to Stored Cross-Site Scripting | dholovnia | Stockists Manager for Woocommerce | High | 8.8 | 2022-09-06 17:18:58 | Deep Dive |
| CVE-2022-2429 | Ultimate SMS Notifications for WooCommerce <= 1.4.1 - CSV Injection | homescript | Ultimate SMS Notifications for WooCommerce | Medium | 6.5 | 2022-09-06 17:18:56 | Deep Dive |
| CVE-2022-2657 | Multivendor Marketplace Solution for WooCommerce < 3.8.12 - Unauthorised AJAX Calls | Unknown | Multivendor Marketplace Solution for WooCommerce – WC Marketplace | 中危 | - | 2022-09-05 12:35:22 | Deep Dive |