WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels, CVE-2025-24644
- CVE, Research URL
- Home page URL
-
Security reports for WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels
- Published on
- Jan 24, 2025
- Research Description
- Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WebToffee WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels allows Stored XSS. This issue affects WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels: from n/a through 4.7.1.
- Affected versions
-
max 4.7.2.
- Status
-
vulnerable