Extension WordPress

Vulnérabilités EAN Barcode Generator for WooCommerce: UPC, ISBN & GTIN Inventory

Cette page rassemble les failles publiées pour EAN Barcode Generator for WooCommerce: UPC, ISBN & GTIN Inventory, leurs plages de versions affectées et les correctifs signalés dans la base locale.

6Vulnérabilités
0Critiques
6Avec correctif
7,2CVSS maximal

Historique de sécurité

CVE et vulnérabilités de EAN Barcode Generator for WooCommerce: UPC, ISBN & GTIN Inventory

6 fiches

CVE-2025-48249 Moyenne · 6,4
EAN Barcode Generator for WooCommerce: UPC, ISBN & GTIN Inventory

EAN for WooCommerce <= 5.4.6 – Authenticated (Contributor+) Stored Cross-Site Scripting

The EAN for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 5.4.6 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access…

Versions affectées

*-5.4.6

Correctif

5.4.7

Publication

19/05/2025

CVE-2024-34370 Élevée · 7,2
EAN Barcode Generator for WooCommerce: UPC, ISBN & GTIN Inventory

EAN for WooCommerce <= 4.8.9 – Authenticated (Shop Manager+) Arbitrary Options Update

The EAN for WooCommerce plugin for WordPress is vulnerable to arbitrary options updates n all versions up to, and including, 4.8.9. This is due to insufficient restrictions on option values that can be supplied. This makes it possible…

Versions affectées

*-4.8.9

Correctif

4.9.0

Publication

03/05/2024

CVE-2023-6892 Moyenne · 6,4
EAN Barcode Generator for WooCommerce: UPC, ISBN & GTIN Inventory

EAN for WooCommerce <= 4.9.2 – Authenticated (Contributor+) Stored Cross-Site Scripting via alg_wc_ean_product_meta Shortcode

The EAN for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'alg_wc_ean_product_meta' shortcode in all versions up to, and including, 4.8.7 due to insufficient input sanitization and output escaping on user supplied attributes.…

Versions affectées

*-4.9.2

Correctif

4.9.3

Publication

17/04/2024

CVE-2023-6897 Moyenne · 4,3
EAN Barcode Generator for WooCommerce: UPC, ISBN & GTIN Inventory

EAN for WooCommerce <= 4.9.2 – Insecure Direct Object Reference to Sensitve Information Exposure via Shortcode

The EAN for WooCommerce plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 4.9.2 via the the 'alg_wc_ean_product_meta' shortcode due to missing validation on a user controlled key. This makes…

Versions affectées

*-4.9.2

Correctif

4.9.3

Publication

17/04/2024

CVE-2023-0062 Moyenne · 6,4
EAN Barcode Generator for WooCommerce: UPC, ISBN & GTIN Inventory

EAN for WooCommerce <= 4.4.2 – Authenticated (Contributor+ )Stored Cross-Site Scripting via Shortcode

The EAN for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcodes in versions up to, and including, 4.4.2 due to insufficient input sanitization and output escaping on user supplied attributes. This makes…

Versions affectées

*-4.4.2

Correctif

4.4.3

Publication

11/01/2023

WP Commander

Rechercher dans toute la base WordPress

Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.

Ouvrir le tableau des vulnérabilités