Extension WordPress
Vulnérabilités Product Feed Manager for WooCommerce – CTX Feed – Support 220+ Shopping & Social Channels
Cette page rassemble les failles publiées pour Product Feed Manager for WooCommerce – CTX Feed – Support 220+ Shopping & Social Channels, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Product Feed Manager for WooCommerce – CTX Feed – Support 220+ Shopping & Social Channels
5 fiches
Product Feed Manager for WooCommerce – CTX Feed – Support 220+ Shopping & Social Channels <= 6.6.26 – Authenticated (Shop Manager+) PHP Object Injection
The Product Feed Manager for WooCommerce – CTX Feed – Support 220+ Shopping & Social Channels plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 6.6.26 via deserialization of untrusted input. This…
*-6.6.26
6.6.27
07/04/2026
CTX Feed – WooCommerce Product Feed Manager <= 6.6.11 – Missing Authorization to Authenticated (Shop Manager+) Arbitrary Plugin Installation
The CTX Feed – WooCommerce Product Feed Manager plugin for WordPress is vulnerable to unauthorized arbitrary plugin installation due to a missing capability check on the woo_feed_plugin_installing() function in all versions up to, and including, 6.6.11. This makes…
*-6.6.11
6.6.12
18/02/2026
CTX Feed <= 6.6.18 – Missing Authorization
The CTX Feed plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to, and including, 6.6.18. This makes it possible for unauthenticated attackers to perform an unauthorized…
*-6.6.18
6.6.19
04/01/2026
CTX Feed <= 6.5.6 – Authenticated (Shop Manager+) Arbitrary Options Update
The CTX Feed – WooCommerce Product Feed Manager Plugin plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the create_item() function in all versions…
*-6.5.6
6.5.7
19/07/2024
WooCommerce Product Feed for Google, Facebook, eBay and Many More <= 3.1.14 – Reflected Cross-Site Scripting
WebAppick WooCommerce Product Feed 3.1.14 and earlier is affected by: Cross Site Scripting (XSS). The impact is: XSS to RCE via editing theme files in WordPress. The component is: admin/partials/woo-feed-manage-list.php:63. The attack vector is: Administrator must be logged…
*-3.1.14
3.1.15
30/08/2019
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.