Extension WordPress
Vulnérabilités Cart All In One For WooCommerce
Cette page rassemble les failles publiées pour Cart All In One For WooCommerce, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Cart All In One For WooCommerce
2 fiches
Cart All In One For WooCommerce <= 1.1.21 – Authenticated (Administrator+) Code Injection via 'sc_assign_page' Setting
The Cart All In One For WooCommerce plugin for WordPress is vulnerable to Code Injection in all versions up to, and including, 1.1.21. This is due to insufficient input validation on the 'Assign page' field which is passed…
*-1.1.21
1.1.22
17/02/2026
Cart All In One For WooCommerce <= 1.1.10 – Cross-Site Request Forgery to Cart Changes
The Cart All In One For WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.10. This is due to missing or incorrect nonce validation on numerous functions in the 'VI_WOO_CART_ALL_IN_ONE_Frontend_Frontend'…
*-1.1.10
1.1.11
14/02/2023
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.