Vulnerabilities and security researches forprimer-mydata primer-mydata
Direction: ascendingDec 15, 2024
Primer MyData for Woocommerce # CVE-2024-11809
- CVE, Research URL
- Home page URL
- Application
- Date
- Dec 13, 2024
- Research Description
- The Primer MyData for Woocommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'img_src' parameter in all versions up to, and including, 4.2.1 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
Apr 02, 2025
Primer MyData for Woocommerce # CVE-2025-30924
- CVE, Research URL
- Home page URL
- Application
- Date
- Apr 01, 2025
- Research Description
- Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in primersoftware Primer MyData for Woocommerce allows Reflected XSS. This issue affects Primer MyData for Woocommerce: from n/a through n/a.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
Aug 16, 2025
Primer MyData for Woocommerce # CVE-2025-53575
- CVE, Research URL
- Home page URL
- Application
- Date
- Aug 15, 2025
- Research Description
- Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in primersoftware Primer MyData for Woocommerce allows Reflected XSS. This issue affects Primer MyData for Woocommerce: from n/a through 4.2.5.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable