Extension WordPress
Vulnérabilités SysBasics Customize My Account for WooCommerce – Live My Account Customizer
Cette page rassemble les failles publiées pour SysBasics Customize My Account for WooCommerce – Live My Account Customizer, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de SysBasics Customize My Account for WooCommerce – Live My Account Customizer
7 fiches
SysBasics Customize My Account for WooCommerce <= 4.4.14 – Authenticated (Shop Manager+) Stored Cross-Site Scripting via 'row_type' Parameter
The SysBasics Customize My Account for WooCommerce – Live My Account Customizer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'row_type' parameter in all versions up to, and including, 4.4.14 due to insufficient input sanitization…
*-4.4.14
4.5.0
15/07/2026
SysBasics Customize My Account for WooCommerce – Live My Account Customizer <= 4.3.9 – Reflected Cross-Site Scripting
The SysBasics Customize My Account for WooCommerce – Live My Account Customizer plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 4.3.9 due to insufficient input sanitization and output escaping. This makes…
*-4.3.9
4.3.10
01/07/2026
SysBasics Customize My Account for WooCommerce <= 4.3.6 – Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode Attributes
The Customize My Account For Woocommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'sysbasics_user_avatar' shortcode in versions up to, and including, 4.3.6. This is due to insufficient input sanitization and output escaping on user…
*-4.3.6
4.3.7
17/06/2026
SysBasics Customize My Account for WooCommerce <= 4.3.6 – Reflected Cross-Site Scripting via 'tab' Parameter
The SysBasics Customize My Account for WooCommerce – Dashboard, Endpoints, Avatar & Menu Manager plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'tab' parameter in all versions up to, and including, 4.3.6 due to insufficient…
*-4.3.6
4.3.7
17/06/2026
SysBasics Customize My Account for WooCommerce <= 2.8.22 – Reflected Cross-Site Scripting
The SysBasics Customize My Account for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to, and including, 2.8.22 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated…
*-2.8.22
2.9.0
21/12/2024
SysBasics Customize My Account for WooCommerce <= 2.7.29 – Reflected Cross-Site Scripting via tab Parameter
The SysBasics Customize My Account for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘tab’ parameter in all versions up to, and including, 2.7.29 due to insufficient input sanitization and output escaping. This makes…
*-2.7.29
2.7.30
09/11/2024
Customize My Account for WooCommerce <= 1.8.3 – Cross-Site Request Forgery via restore_my_account_tabs
The Customize My Account for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.8.3. This is due to missing or incorrect nonce validation on the restore_my_account_tabs function. This makes it…
*-1.8.3
1.8.4
26/12/2023
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.