Vulnerabilities > Themehigh > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-06-10 CVE-2024-35658 Unspecified vulnerability in Themehigh Checkout Field Editor for Woocommerce
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ThemeHigh Checkout Field Editor for WooCommerce (Pro) allows Functionality Misuse, File Manipulation.This issue affects Checkout Field Editor for WooCommerce (Pro): from n/a through 3.6.2.
network
low complexity
themehigh
critical
9.1
2022-05-02 CVE-2022-0783 Unspecified vulnerability in Themehigh multiple Shipping Addresses for Woocommerce
The Multiple Shipping Address Woocommerce WordPress plugin before 2.0 does not properly sanitise and escape numerous parameters before using them in SQL statements via some AJAX actions available to unauthenticated users, leading to unauthenticated SQL injections
network
low complexity
themehigh
critical
9.8