Extension WordPress
Vulnérabilités Discount Rules for WooCommerce
Cette page rassemble les failles publiées pour Discount Rules for WooCommerce, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Discount Rules for WooCommerce
4 fiches
Discount Rules for WooCommerce – Create Smart WooCommerce Coupons & Discounts, Bulk Discount, BOGO Coupons <= 2.6.5 – Reflected Cross-Site Scripting
The Discount Rules for WooCommerce – Create Smart WooCommerce Coupons & Discounts, Bulk Discount, BOGO Coupons plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in…
*-2.6.5
2.6.6
15/10/2024
Discount Rules for WooCommerce <= 2.4.1 – Reflected Cross-Site Scripting
The Discount Rules for WooCommerce WordPress plugin before 2.4.2 does not escape a parameter before outputting it back in an attribute of the plugin's discount rule page, leading to Reflected Cross-Site Scripting
*-2.4.1
2.4.2
27/06/2022
Discount Rules for WooCommerce <= 2.2.0 – Missing Authorization
The Discount Rules for WooCommerce plugin for WordPress is vulnerable to missing authorization via several AJAX actions in versions up to, and including, 2.2.0 due to missing capability checks on various functions. This makes it possible for subscriber-level…
*-2.2.0
2.2.1
17/09/2020
Discount Rules for WooCommerce <= 2.0.2 – Missing Authorization
The Discount Rules for WooCommerce plugin for WordPress is vulnerable to missing authorization via several AJAX actions in versions up to, and including, 2.0.2 due to missing capability checks on various functions. This makes it possible for subscriber-level…
*-2.0.2
2.1.0
20/08/2020
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.