Varktech Pricing Deals For Woocommerce vulnerabilities
2 known vulnerabilities affecting varktech/pricing_deals_for_woocommerce.
Total CVEs
2
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2022-1057P2CRITICALCVSS 9.8PoC≤ 2.0.2.022022-07-11
CVE-2022-1057 [CRITICAL] CWE-89 CVE-2022-1057: The Pricing Deals for WooCommerce WordPress plugin through 2.0.2.02 does not properly sanitise and e
The Pricing Deals for WooCommerce WordPress plugin through 2.0.2.02 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to an unauthenticated SQL injection
nvd
CVE-2023-41240P4MEDIUMCVSS 5.3≤ 2.0.3.22024-06-12
CVE-2023-41240 [MEDIUM] CWE-862 CVE-2023-41240: Missing Authorization vulnerability in Vark Pricing Deals for WooCommerce.This issue affects Pricing
Missing Authorization vulnerability in Vark Pricing Deals for WooCommerce.This issue affects Pricing Deals for WooCommerce: from n/a through 2.0.3.2.
nvd