Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Booster for WooCommerce — Vulnerabilities & Security Advisories 18

All 18 CVE vulnerabilities found in Booster for WooCommerce, with AI-generated Chinese analysis, references, and POCs.

Vendor: Unknown

CVE IDTitleCVSSSeverityPublished
CVE-2026-32586 WordPress Booster for WooCommerce plugin < 7.11.3 - Broken Access Control vulnerability CWE-862 8.1AIHighAI2026-03-17
CVE-2025-64380 WordPress Booster for WooCommerce plugin <= 7.3.2 - Cross Site Scripting (XSS) vulnerability CWE-79 5.4 -2025-11-13
CVE-2025-64379 WordPress Booster for WooCommerce plugin <= 7.4.0 - Broken Access Control vulnerability CWE-862 9.1 -2025-11-13
CVE-2025-64196 WordPress Booster for WooCommerce plugin <= 7.2.5 - Cross Site Scripting (XSS) vulnerability CWE-79 6.1 -2025-11-06
CVE-2024-13708 Booster for WooCommerce 4.0.1 - 7.2.4 - Unauthenticated Stored Cross-Site Scripting CWE-434 7.2 High2025-04-04
CVE-2024-13744 Booster for WooCommerce 4.0.1 - 7.2.4 - Unauthenticated Arbitrary File Upload CWE-434 8.1 High2025-04-04
CVE-2023-48747 WordPress Booster for WooCommerce plugin <= 7.1.2 - Authenticated Production Creation/Modification Vulnerability CWE-287 6.5 Medium2024-06-04
CVE-2024-29760 WordPress Booster for WooCommerce plugin <= 7.1.8 - Reflected Cross Site Scripting (XSS) vulnerability CWE-79 7.1 High2024-03-27
CVE-2023-48333 WordPress Booster for WooCommerce Plugin <= 7.1.1 is vulnerable to Sensitive Data Exposure CWE-200 6.5 Medium2023-11-30
CVE-2023-40002 WordPress Booster for WooCommerce Plugin <= 7.1.1 is vulnerable to Sensitive Data Exposure CWE-200 6.5 Medium2023-11-22
CVE-2022-4017 Booster for WooCommerce - Multiple CSRF 8.8 -2023-01-23
CVE-2022-4227 Booster for WooCommerce - Reflected Cross-Site Scripting 6.1 -2022-12-26
CVE-2022-4016 Booster for WooCommerce - Custom Role Creation/Deletion via CSRF 6.5 -2022-12-12
CVE-2022-3763 Booster for WooCommerce - Checkout Files Deletion via CSRF 6.5 -2022-11-21
CVE-2022-3762 Booster for WooCommerce - ShopManager+ Arbitrary File Download 7.5 -2022-11-21
CVE-2021-25001 Booster for WooCommerce < 5.4.9 - Reflected Cross-Site Scripting in Product XML Feeds Module CWE-79 6.1 -2022-01-03
CVE-2021-25000 Booster for WooCommerce < 5.4.9 - Reflected Cross-Site Scripting in General Module CWE-79 6.1 -2022-01-03
CVE-2021-24999 Booster for Woocommerce < 5.4.9 - Reflected Cross-Site Scripting in PDF Invoicing Module CWE-79 6.1 -2022-01-03

All 18 known CVE vulnerabilities affecting Booster for WooCommerce with full Chinese analysis, references, and POCs where available.