Extension WordPress
Vulnérabilités MultiLoca – WooCommerce Multi Locations Inventory Management
Cette page rassemble les failles publiées pour MultiLoca – WooCommerce Multi Locations Inventory Management, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de MultiLoca – WooCommerce Multi Locations Inventory Management
3 fiches
MultiLoca <= 4.2.15 – Authenticated (Subscriber+) Privilege Escalation
The MultiLoca – WooCommerce Multi Locations Inventory Management plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 4.2.15. This makes it possible for authenticated attackers, with Subscriber-level access and above, to elevate…
*-4.2.15
4.2.16
08/04/2026
MultiLoca – WooCommerce Multi Locations Inventory Management <= 4.2.8 – Missing Authorization to Unauthenticated Arbitrary Options Update via 'wcmlim_settings_ajax_handler'
The MultiLoca – WooCommerce Multi Locations Inventory Management plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the 'wcmlim_settings_ajax_handler' function in all versions up…
*-4.2.8
4.2.9
23/09/2025
MultiLoca – WooCommerce Multi Locations Inventory Management <= 4.1.11 – Authenticated (Subscriber+) SQL Injection
The MultiLoca – WooCommerce Multi Locations Inventory Management plugin for WordPress is vulnerable to SQL Injection via the 'data-id' parameter in all versions up to, and including, 4.1.11 due to insufficient escaping on the user supplied parameter and…
*-4.1.11
4.1.12
31/01/2025
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.