| CVE-2026-4479 | WholeSale Products Dynamic Pricing Management WooCommerce <= 1.2 - Authenticated (Administrator+) Stored Cross-Site Scripting via Plugin Settings | wpcodefactory | WholeSale Products Dynamic Pricing Management WooCommerce | Medium | 4.4 | 2026-04-14 03:37:34 | Deep Dive |
| CVE-2025-47588 | WordPress Dynamic Pricing With Discount Rules for WooCommerce plugin <= 4.5.9 - Arbitrary Code Execution vulnerability | acowebs | Dynamic Pricing With Discount Rules for WooCommerce | Critical | 9.1 | 2025-11-06 15:53:36 | Deep Dive |
| CVE-2025-49077 | WordPress Dynamic Pricing and Discount Rules plugin <= 2.2.9 - Cross Site Request Forgery (CSRF) vulnerability | ThemeHigh | Dynamic Pricing and Discount Rules | Medium | 4.3 | 2025-06-06 11:18:48 | Deep Dive |
| CVE-2025-48342 | WordPress Dynamic Pricing & Discounts Lite for WooCommerce plugin <= 2.0.3 - Cross Site Request Forgery (CSRF) vulnerability | RedefiningTheWeb | Dynamic Pricing & Discounts Lite for WooCommerce | Medium | 5.4 | 2025-05-19 14:55:23 | Deep Dive |
| CVE-2025-47544 | WordPress Dynamic Pricing With Discount Rules for WooCommerce plugin <= 4.5.8 - SQL Injection Vulnerability | acowebs | Dynamic Pricing With Discount Rules for WooCommerce | High | 7.6 | 2025-05-07 14:20:17 | Deep Dive |
| CVE-2025-39453 | WordPress Advanced Dynamic Pricing for WooCommerce plugin <= 4.9.3 - Cross Site Request Forgery (CSRF) to Settings Change vulnerability | algol.plus | Advanced Dynamic Pricing for WooCommerce | Medium | 4.3 | 2025-04-17 15:15:42 | Deep Dive |
| CVE-2025-31598 | WordPress Quantity Dynamic Pricing & Bulk Discounts for WooCommerce plugin <= 4.0.3 - Stored Cross Site Scripting (XSS) vulnerability | WPFactory | Quantity Dynamic Pricing & Bulk Discounts for WooCommerce | Medium | 6.5 | 2025-03-31 12:55:33 | Deep Dive |
| CVE-2025-24632 | WordPress Advanced Dynamic Pricing for WooCommerce Plugin <= 4.9.0 -Reflected Cross Site Scripting (XSS) vulnerability | algol.plus | Advanced Dynamic Pricing for WooCommerce | High | 7.1 | 2025-01-31 08:24:41 | Deep Dive |
| CVE-2024-12266 | ELEX WooCommerce Dynamic Pricing and Discounts <= 2.1.7 - Missing Authorization | elextensions | ELEX WooCommerce Dynamic Pricing and Discounts | Medium | 6.5 | 2024-12-24 04:22:44 | Deep Dive |
| CVE-2022-4974 | Freemius SDK <= 2.4.2 - Missing Authorization Checks | dashlabsltd | YASR – Yet Another Star Rating Plugin for WordPress | Medium | 6.3 | 2024-10-16 06:43:30 | Deep Dive |
| CVE-2024-9384 | Quantity Dynamic Pricing & Bulk Discounts for WooCommerce <= 3.8.0 - Reflected Cross-Site Scripting | wpcodefactory | Price by Quantity & Bulk Quantity Discounts for WooCommerce | Medium | 6.1 | 2024-10-04 02:04:57 | Deep Dive |
| CVE-2024-31364 | WordPress ELEX WooCommerce Dynamic Pricing and Discounts plugin <= 2.1.2 - Cross Site Request Forgery (CSRF) vulnerability | ELEXtensions | ELEX WooCommerce Dynamic Pricing and Discounts | Medium | 4.3 | 2024-04-12 12:19:10 | Deep Dive |
| CVE-2024-32105 | WordPress ELEX WooCommerce Dynamic Pricing and Discounts plugin <= 2.1.2 - Cross Site Request Forgery (CSRF) vulnerability | ELEXtensions | ELEX WooCommerce Dynamic Pricing and Discounts | Medium | 4.3 | 2024-04-11 13:16:23 | Deep Dive |
| CVE-2024-31255 | WordPress ELEX WooCommerce Dynamic Pricing and Discounts plugin <= 2.1.2 - Cross Site Scripting (XSS) vulnerability | ELEXtensions | ELEX WooCommerce Dynamic Pricing and Discounts | High | 7.1 | 2024-04-07 17:51:18 | Deep Dive |
| CVE-2022-40203 | WordPress Advanced Dynamic Pricing for WooCommerce Plugin <= 4.1.5 is vulnerable to Broken Access Control | AlgolPlus | Advanced Dynamic Pricing for WooCommerce | Medium | 6.3 | 2024-01-17 16:08:58 | Deep Dive |
| CVE-2022-34344 | WordPress Wholesale Suite Plugin <= 2.1.5 is vulnerable to Broken Access Control | Rymera Web Co | Wholesale Suite – WooCommerce Wholesale Prices, B2B, Catalog Mode, Order Form, Wholesale User Roles, Dynamic Pricing & More | Medium | 5.4 | 2024-01-08 21:13:45 | Deep Dive |
| CVE-2021-4353 | WooCommerce Dynamic Pricing and Discounts <= 2.4.1 - Unauthenticated Settings Import/Export | RightPress | WooCommerce Dynamic Pricing and Discounts | Medium | 5.3 | 2023-10-20 06:35:25 | Deep Dive |
| CVE-2023-40559 | WordPress WooCommerce Dynamic Pricing and Discount Rules Plugin <= 2.4.0 is vulnerable to Cross Site Request Forgery (CSRF) | theDotstore | Dynamic Pricing and Discount Rules for WooCommerce | Medium | 4.3 | 2023-10-04 14:11:09 | Deep Dive |
| CVE-2022-4888 | Multiple Plugins from Addify - Multiple CSRF | Unknown | Checkout Fields Manager | 中危 | - | 2023-07-31 09:37:33 | Deep Dive |
| CVE-2021-4372 | WooCommerce Dynamic Pricing and Discounts <= 2.4.1 - Stored Cross-Site Scripting | RightPress | WooCommerce Dynamic Pricing and Discounts | Medium | 6.5 | 2023-06-07 01:51:41 | Deep Dive |