Unauthenticated Account Takeover/Privilege Escalation vulnerability
1 April, 2025
SQL Injection vulnerability
2 March, 2025
Reflected Cross Site Scripting (XSS) vulnerability
23 February, 2025
Missing Authorization to Authenticated (Subscriber+) Arbitrary Options Update vulnerability
7 January, 2025
WooCommerce plugin <= 3.7.5 Authenticated (Contributor+) Stored CrossSite Scripting via sa_subscribe Shortcode vulnerability
29 October, 2024