Vulnerabilities > Algolplus

DATE CVE VULNERABILITY TITLE RISK
2020-05-06 CVE-2020-11727 Cross-site Scripting vulnerability in Algolplus Advanced Order Export for Woocommerce 3.1.3
A cross-site scripting (XSS) vulnerability in the AlgolPlus Advanced Order Export For WooCommerce plugin 3.1.3 for WordPress allows remote attackers to inject arbitrary web script or HTML via the view/settings-form.php woe_post_type parameter.
network
low complexity
algolplus CWE-79
6.1
2018-06-19 CVE-2018-11525 Improper Neutralization of Formula Elements in a CSV File vulnerability in Algolplus Advanced Order Export for Woocommerce
The plugin "Advanced Order Export For WooCommerce" for WordPress (v1.5.4 and before) is vulnerable to CSV Injection.
local
low complexity
algolplus CWE-1236
7.8