cleantalk
Vulnerabilities and Security Researches

WooCommerce, CVE-2023-47777

CVE, Research URL

CVE-2023-47777

Application

WooCommerce

Published on
Nov 30, 2023
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Automattic WooCommerce, Automattic WooCommerce Blocks allows Stored XSS.This issue affects WooCommerce: from n/a through 8.1.1; WooCommerce Blocks: from n/a through 11.1.1.
Affected versions
Min -, max 7.9.0.
Status
vulnerable