Vulnerabilities (CVE)

Filtered by vendor Varktech Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-41240 1 Varktech 1 Pricing Deals For Woocommerce 2024-11-21 N/A 5.3 MEDIUM
Missing Authorization vulnerability in Vark Pricing Deals for WooCommerce.This issue affects Pricing Deals for WooCommerce: from n/a through 2.0.3.2.
CVE-2023-30492 1 Varktech 1 Minimum Purchase For Woocommerce 2024-11-21 N/A 6.5 MEDIUM
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Vark Minimum Purchase for WooCommerce plugin <= 2.0.0.1 versions.
CVE-2022-1057 1 Varktech 1 Pricing Deals For Woocommerce 2024-11-21 7.5 HIGH 9.8 CRITICAL
The Pricing Deals for WooCommerce WordPress plugin through 2.0.2.02 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to an unauthenticated SQL injection