Extension WordPress
Vulnérabilités CURCY – WooCommerce Multi Currency – Currency Switcher
Cette page rassemble les failles publiées pour CURCY – WooCommerce Multi Currency – Currency Switcher, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de CURCY – WooCommerce Multi Currency – Currency Switcher
3 fiches
CURCY <= 2.3.7 – Missing Authorization to Arbitrary Shortcode Execution
The The CURCY – WooCommerce Multi Currency – Currency Switcher plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 2.3.7. This is due to the software allowing users to execute an…
*-2.3.7
Non indiqué
16/05/2025
CURCY – WooCommerce Multi Currency – Currency Switcher <= 2.3.6 – Unauthenticated SQL Injection
The CURCY – WooCommerce Multi Currency – Currency Switcher plugin for WordPress is vulnerable to SQL Injection via the 'wc_filter_price_meta[where]' parameter in all versions up to, and including, 2.3.6 due to insufficient escaping on the user supplied parameter…
*-2.3.6
2.3.7
06/03/2025
WooCommerce Multi Currency <= 2.1.17 – Missing Authorization
The WooCommerce Multi Currency plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the wmc_bulk_fixed_price function in versions up to, and including, 2.1.17. This makes it possible for authenticated attackers, with subscriber-level…
*-2.1.17
2.1.18
13/09/2021
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.