cleantalk
Vulnerabilities and Security Researches

YITH WooCommerce Product Add-Ons, CVE-2024-27994

CVE, Research URL

CVE-2024-27994

Published on
Mar 21, 2024
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in YITH YITH WooCommerce Product Add-Ons allows Reflected XSS.This issue affects YITH WooCommerce Product Add-Ons: from n/a through 4.5.0.
Affected versions
max 4.6.0.
Status
vulnerable