WooCommerce WordPress plugin 2.2.10 Reflected XSS

Posted by Eric Flokstra on Feb 21

====================================================
Product: WooCommerce WordPress plugin
Vendor: WooThemes
Tested Version: 2.2.10
Vulnerability Type: Cross-Site Scripting [CWE-79]
Risk Level: Medium
CVSSv2 Base Score: 4.3 (AV:N/AC:M/Au:N/C:N/I:P/A:N)
Solution Status: Solved in version 2.2.11
Discovered and Provided: Eric Flokstra – ITsec Security Services
====================================================
[-] About the Vendor:

WooCommerce is…

Leave a Reply