Vulnerabilities > Standalonetech

DATE CVE VULNERABILITY TITLE RISK
2024-04-18 CVE-2024-32584 Unspecified vulnerability in Standalonetech Terawallet
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in StandaloneTech TeraWallet – For WooCommerce allows Stored XSS.This issue affects TeraWallet – For WooCommerce: from n/a through 1.5.0.
network
low complexity
standalonetech
4.8
2023-03-01 CVE-2022-40198 Cross-Site Request Forgery (CSRF) vulnerability in Standalonetech Terawallet
Cross-Site Request Forgery (CSRF) vulnerability in StandaloneTech TeraWallet – For WooCommerce plugin <= 1.3.24 leading to plugin settings change.
network
low complexity
standalonetech CWE-352
4.3
2023-02-02 CVE-2022-36401 Unspecified vulnerability in Standalonetech Terawallet
Cross-Site Request Forgery (CSRF) vulnerability in TeraWallet – For WooCommerce plugin <= 1.3.24 versions.
network
low complexity
standalonetech
8.8
2022-11-29 CVE-2022-3995 Authorization Bypass Through User-Controlled Key vulnerability in Standalonetech Terawallet
The TeraWallet plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to, and including, 1.4.3.
network
low complexity
standalonetech CWE-639
4.3