Vulnerabilities > Multivendorx > Product Catalog Mode FOR Woocommerce > 4.0.3

DATE CVE VULNERABILITY TITLE RISK
2024-06-09 CVE-2024-25929 Unspecified vulnerability in Multivendorx Product Catalog Mode for Woocommerce
Missing Authorization vulnerability in MultiVendorX Product Catalog Enquiry for WooCommerce by MultiVendorX.This issue affects Product Catalog Enquiry for WooCommerce by MultiVendorX: from n/a through 5.0.5.
network
low complexity
multivendorx
critical
9.1
2023-12-18 CVE-2023-5348 Cross-site Scripting vulnerability in Multivendorx Product Catalog Mode for Woocommerce
The Product Catalog Mode For WooCommerce WordPress plugin before 5.0.3 does not properly authorize settings updates or escape settings values, leading to stored XSS by unauthenticated users.
network
low complexity
multivendorx CWE-79
6.1