Vulnerabilities > Najeebmedia
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2019-08-12 | CVE-2019-14948 | Cross-site Scripting vulnerability in Najeebmedia Ppom for Woocommerce The woocommerce-product-addon plugin before 18.4 for WordPress has XSS via an import of a new meta data structure. | 5.4 |
2019-07-05 | CVE-2019-5979 | Cross-Site Request Forgery (CSRF) vulnerability in Najeebmedia Personalized Woocommerce Cart Page Cross-site request forgery (CSRF) vulnerability in Personalized WooCommerce Cart Page 2.4 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors. | 8.8 |