Vulnerabilities (CVE)

Filtered by vendor Coinmarketstats Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-4118 1 Coinmarketstats 1 Bitcoin \/ Altcoin Payment Gateway For Woocommerce 2024-02-28 N/A 9.8 CRITICAL
The Bitcoin / AltCoin Payment Gateway for WooCommerce & Multivendor store / shop WordPress plugin through 1.7.1 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by authenticated users
CVE-2021-24679 1 Coinmarketstats 1 Bitcoin \/ Altcoin Payment Gateway For Woocommerce 2024-02-28 4.3 MEDIUM 6.1 MEDIUM
The Bitcoin / AltCoin Payment Gateway for WooCommerce WordPress plugin before 1.6.1 does not escape the 's' GET parameter before outputting back in the All Masking Rules page, leading to a Reflected Cross-Site Scripting issue