Vulnerabilities > Advanced WOO Search > Advanced WOO Search > 2.54

DATE CVE VULNERABILITY TITLE RISK
2024-01-13 CVE-2024-0251 Cross-site Scripting vulnerability in Advanced-Woo-Search Advanced WOO Search
The Advanced Woo Search plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the search parameter in all versions up to, and including, 2.96 due to insufficient input sanitization and output escaping.
network
low complexity
advanced-woo-search CWE-79
6.1