Extension WordPress
Vulnérabilités Store Exporter – Export WooCommerce Products, Orders, Subscriptions, Customers
Cette page rassemble les failles publiées pour Store Exporter – Export WooCommerce Products, Orders, Subscriptions, Customers, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Store Exporter – Export WooCommerce Products, Orders, Subscriptions, Customers
9 fiches
Store Exporter <= 2.7.6 – Unauthenticated Local File Inclusion
The Store Exporter plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 2.7.6. This makes it possible for unauthenticated attackers to include and execute arbitrary files on the server, allowing the execution…
*-2.7.6
2.7.7
15/07/2025
WooCommerce – Store Exporter <= 2.7.4 – Reflected Cross-Site Scripting
The Store Exporter – Export WooCommerce Products, Orders, Subscriptions, Customers plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to, and including, 2.7.4 due to insufficient input sanitization and output escaping. This makes it…
*-2.7.4
2.7.5
09/04/2025
Store Exporter for WooCommerce – Export Products, Export Orders, Export Subscriptions, and More <= 2.7.2.1 – Reflected Cross-Site Scripting
The Store Exporter for WooCommerce – Export Products, Export Orders, Export Subscriptions, and More plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions…
*-2.7.2.1
2.7.3
30/09/2024
WooCommerce – Store Exporter <= 2.7.2 – Reflected Cross-Site Scripting via 'filter'
The Store Exporter for WooCommerce – Export Products, Export Orders, Export Subscriptions, and More plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'filter' parameter in all versions up to, and including, 2.7.2 due to insufficient…
*-2.7.2
2.7.2.1
29/10/2023
WooCommerce – Store Exporter <= 2.7 – Reflected Cross-Site Scripting
The WooCommerce Stored Exporter WordPress plugin before 2.7.1 was affected by a Reflected Cross-Site Scripting (XSS) vulnerability in the woo_ce admin page.
*-2.7
2.7.1
10/01/2022
WooCommerce – Store Exporter <= 2.3.1 – CSV Injection
The WooCommerce – Store Exporter plugin for WordPress is vulnerable to CSV Injection in versions up to, and including, 2.3.1 via the Quick Export' functionality. This allows authenticated attackers to embed untrusted input into exported CSV files, which…
*-2.3.1
2.4
09/01/2020
WooCommerce – Store Exporter <= 1.8.3 – Missing Authorization
The WooCommerce – Store Exporter plugin for WordPress is vulnerable to authorization bypass due to a missing capability check in the woo_ce_admin_init function hooked via 'init' in versions up to, and including 1.8.3. This makes it possible for…
[*, 1.8.4)
1.8.4
10/02/2016
WooCommerce – Store Exporter <= 1.7.5 – Stored Cross-Site Scripting
The WooCommerce – Store Exporter plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'export_filename' parameter in versions up to, and including, 1.7.5 due to insufficient input sanitization and output escaping. This makes it possible for…
*-1.7.5
1.7.6
26/08/2014
WooCommerce Store Exporter <= 1.7.5 – Reflected Cross-Site Scripting
The WooCommerce Store Exporter plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'tab' & 'dataset' parameters in versions up to, and including, 1.7.5 due to insufficient input sanitization and output escaping. This makes it possible…
*-1.7.5
1.7.6
26/08/2014
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.