PricingCase studies Login Start trial
Plugin Icon

YITH WooCommerce Product Add-Ons

YITHEMES

Developer

4.26.0

Latest version

20,000

Installations

No date

Last updated

WordPress Plugin
Active VDP
Report vulnerability
    VulnerabilitiesSecurity PolicySecurity Contributors

Vulnerability history

0 present
8 fixed
5 Mitigation rules
  • Reflected Cross Site Scripting (XSS) vulnerability
    <= 4.14.1
    Oct 24, 2024
  • Reflected Cross Site Scripting (XSS) vulnerability
    <= 4.13.0
    Sep 30, 2024
  • Content Injection vulnerability
    <= 4.9.2
    Jun 6, 2024
  • Cross Site Scripting (XSS) vulnerability
    <= 4.5.0
    Mar 15, 2024
  • PHP Object Injection vulnerability
    <= 4.3.0
    Dec 28, 2023
  • Broken Access Control vulnerability
    <= 4.2.0
    Oct 25, 2023
  • Multiple Cross-Site Request Forgery (CSRF) vulnerabilities
    <= 2.15.0
    Dec 5, 2022
  • Authenticated Settings Change (YITH Plugin Framework <=3.3.8) vulnerability
    <= 1.5.21
    Oct 31, 2019

Vulnerability mitigation

  • Pricing
  • Application security (SCA)
  • RapidMitigate New
  • Threat Intelligence (API)
  • VS Monarx
  • VS Imunify360
  • VS Wordfence
  • Documentation
  • Service status
  • Log in

Code security

  • Managed VDP New
  • Active VDP directory 1,089
  • Security auditing
  • Compliance (CRA) New
  • Log in New

Bug bounty

  • Bug bounty
  • Leaderboard
  • Guidelines
  • Learn New
  • Report
  • Discord
  • Log in New

Use cases

  • Web developers
  • Webhosts New
  • Software vendors
  • WordPress
  • WooCommerce

Resources

  • Vulnerability database
  • Whitepaper 2025 New
  • Articles
  • Case studies New
  • Webinars New
  • Vulnerability statistics

Patchstack

  • About
  • Careers
  • Merch store
  • Media kit
  • LinkedIn
  • Facebook
  • X
© 2025 Patchstack
DPA
Privacy Policy
Accessibility
Terms & Conditions
EU Flag