Pricing
Case studies
Login
Start trial
Cost Calculator Builder
Stylemix
Developer
3.6.17
Latest version
30,000
Installations
No date
Last updated
WordPress Plugin
Active VDP
Report vulnerability
Vulnerabilities
Security Policy
Security Contributors
Vulnerability history
0 present
17 patched
10 Mitigation rules
Missing Authorization to Unauthenticated Payment Status Bypass vulnerability
<= 3.6.9
15/01/2026
Authenticated (Subscriber+) Missing Authorization via get_cc_orders/update_order_status Functions vulnerability
<= 3.5.32
31/12/2025
Unauthenticated Arbitrary File Deletion vulnerability
<= 3.6.3
02/12/2025
Broken Access Control vulnerability
<= 3.5.32
15/10/2025
Cross Site Scripting (XSS) Vulnerability
<= 3.2.74
19/05/2025
SQL Injection Vulnerability
<= 3.2.65
16/04/2025
Authenticated (Subscriber+) SQL Injection via order_ids Parameter vulnerability
<= 3.2.67
11/04/2025
Cross Site Scripting (XSS) vulnerability
<= 3.2.65
29/03/2025
Settings update via CSRF vulnerability
< 3.2.43
18/12/2024
Admin+ SQL Injection vulnerability
< 3.2.29
30/09/2024
SQL Injection vulnerability
<= 3.2.15
07/08/2024
Authenticated (Administrator+) Stored Cross-Site Scripting vulnerability
<= 3.2.12
02/07/2024
Missing Authorization to Authenticated (Subscriber+) Arbitrary Content Creation vulnerability
<= 3.2.12
02/07/2024
Broken Access Control vulnerability
<= 3.1.42
18/08/2023
Reflected Cross Site Scripting (XSS) vulnerability
<= 2.3.2
19/07/2023
Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability
< 2.3.3
28/02/2022
Sensitive Information Disclosure vulnerability
< 2.3.3
28/02/2022