| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-4479 | WholeSale Products Dynamic Pricing Management WooCommerce <= 1.2 - Authenticated (Administrator+) Stored Cross-Site Scripting via Plugin Settings | wpcodefactory | WholeSale Products Dynamic Pricing Management WooCommerce | Medium | 4.4 | 2026-04-14 03:37:34 | Deep Dive |
| CVE-2026-27540 | WordPress Woocommerce Wholesale Lead Capture plugin <= 2.0.3.1 - Arbitrary File Upload vulnerability | Rymera Web Co Pty Ltd. | Woocommerce Wholesale Lead Capture | 超危 | - | 2026-03-19 05:24:46 | Deep Dive |
| CVE-2026-27542 | WordPress Woocommerce Wholesale Lead Capture plugin <= 2.0.3.1 - Privilege Escalation vulnerability | Rymera Web Co Pty Ltd. | Woocommerce Wholesale Lead Capture | 超危 | - | 2026-03-19 05:22:50 | Deep Dive |
| CVE-2026-27541 | WordPress Wholesale Suite plugin <= 2.2.6 - Privilege Escalation vulnerability | Josh Kohlbach | Wholesale Suite | 中危 | - | 2026-03-05 05:54:03 | Deep Dive |
| CVE-2025-12411 | Premmerce Wholesale Pricing for WooCommerce <= 1.1.10 - Authenticated (Subscriber+) SQL Injection | premmerce | Premmerce Wholesale Pricing for WooCommerce | High | 7.1 | 2025-11-18 08:27:30 | Deep Dive |
| CVE-2025-13180 | Bdtask/CodeCanyon Wholesale Inventory Control and Inventory Management System edit_profile cross site scripting | Bdtask | Wholesale Inventory Control and Inventory Management System | Low | 3.5 | 2025-11-14 19:32:09 | Deep Dive |
| CVE-2025-13179 | Bdtask/CodeCanyon Wholesale Inventory Control and Inventory Management System cross-site request forgery | Bdtask | Wholesale Inventory Control and Inventory Management System | Medium | 4.3 | 2025-11-14 19:32:07 | Deep Dive |
| CVE-2025-60192 | WordPress Premmerce Wholesale Pricing for WooCommerce plugin <= 1.1.10 - Local File Inclusion vulnerability | Premmerce | Premmerce Wholesale Pricing for WooCommerce | High | 7.5 | 2025-11-06 15:54:49 | Deep Dive |
| CVE-2025-64285 | WordPress Premmerce Wholesale Pricing for WooCommerce plugin <= 1.1.10 - Broken Access Control vulnerability | Premmerce | Premmerce Wholesale Pricing for WooCommerce | Medium | 5.4 | 2025-10-29 08:38:13 | Deep Dive |
| CVE-2025-12287 | Bdtask Wholesale Inventory Control and Inventory Management System edit_profile sql injection | Bdtask | Wholesale Inventory Control and Inventory Management System | Medium | 4.7 | 2025-10-27 14:32:07 | Deep Dive |
| CVE-2025-49924 | WordPress Wholesale Suite plugin <= 2.2.4.2 - Privilege Escalation vulnerability | Josh Kohlbach | Wholesale Suite | High | 7.2 | 2025-10-22 14:32:14 | Deep Dive |
| CVE-2022-4363 | Wholesale Market <= 2.2.2 - Settings Update via CSRF | Unknown | Wholesale Market | - | - | 2025-05-16 20:33:46 | Deep Dive |
| CVE-2024-38745 | WordPress Wholesale Suite plugin <= 2.1.12 - Broken Access Control vulnerability | Rymera Web Co | Wholesale Suite | Medium | 5.3 | 2024-11-01 14:18:00 | Deep Dive |
| CVE-2022-4974 | Freemius SDK <= 2.4.2 - Missing Authorization Checks | dashlabsltd | YASR – Yet Another Star Rating Plugin for WordPress | Medium | 6.3 | 2024-10-16 06:43:30 | Deep Dive |
| CVE-2024-30542 | WordPress WholesaleX plugin <= 1.3.2 - Unauthenticated Privilege Escalation vulnerability | Wholesale | WholesaleX | Critical | 9.8 | 2024-05-17 08:52:21 | Deep Dive |
| CVE-2024-31297 | WordPress Wholesale For WooCommerce plugin <= 2.3.1 - Unauthenticated Arbitrary Post/Page vulnerability | WPExperts | Wholesale For WooCommerce | High | 7.5 | 2024-04-10 15:58:56 | Deep Dive |
| CVE-2024-30469 | WordPress Wholesale For WooCommerce plugin <= 2.3.0 - Unauthenticated Sensitive Data Exposure vulnerability | WPExperts | Wholesale For WooCommerce | Medium | 5.3 | 2024-03-29 15:47:05 | Deep Dive |
| CVE-2024-30224 | WordPress WholesaleX plugin <= 1.3.2 - Unauthenticated PHP Object Injection vulnerability | Wholesale Team | WholesaleX | Critical | 10.0 | 2024-03-28 05:02:20 | Deep Dive |
| CVE-2024-30234 | WordPress WholesaleX plugin <= 1.3.1 - Broken Access Control vulnerability | Wholesale Team | WholesaleX | Medium | 6.5 | 2024-03-26 12:16:09 | Deep Dive |
| CVE-2024-30233 | WordPress WholesaleX plugin <= 1.3.1 - Sensitive Data Exposure on User Export vulnerability | Wholesale Team | WholesaleX | Medium | 6.5 | 2024-03-26 12:10:56 | Deep Dive |