Extension WordPress

Vulnérabilités Amazon Products to WooCommerce

Cette page rassemble les failles publiées pour Amazon Products to WooCommerce, leurs plages de versions affectées et les correctifs signalés dans la base locale.

2Vulnérabilités
0Critiques
0Avec correctif
7,2CVSS maximal

Historique de sécurité

CVE et vulnérabilités de Amazon Products to WooCommerce

2 fiches

CVE-2025-5817 Élevée · 7,2
Amazon Products to WooCommerce

Amazon Products to WooCommerce <= 1.2.7 – Unauthenticated Server-Side Request Forgery

The Amazon Products to WooCommerce plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 1.2.7 via the wcta2w_get_urls(). This makes it possible for unauthenticated attackers to make web requests to arbitrary…

Versions affectées

*-1.2.7

Correctif

Non indiqué

Publication

01/07/2025

CVE-2025-5813 Moyenne · 5,3
Amazon Products to WooCommerce

Amazon Products to WooCommerce <= 1.2.7 – Missing Authorization to Unauthenticated Arbitrary Product Creation

The Amazon Products to WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the wcta2w_get_amazon_product_callback() function in all versions up to, and including, 1.2.7. This makes it possible for…

Versions affectées

*-1.2.7

Correctif

Non indiqué

Publication

25/06/2025

WP Commander

Rechercher dans toute la base WordPress

Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.

Ouvrir le tableau des vulnérabilités