Vulnerabilities > Tychesoftwares > Abandoned Cart Lite FOR Woocommerce > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-10-16 CVE-2023-44986 Cross-site Scripting vulnerability in Tychesoftwares Abandoned Cart Lite for Woocommerce
Auth.
network
low complexity
tychesoftwares CWE-79
4.8
2023-07-12 CVE-2021-4414 Unspecified vulnerability in Tychesoftwares Abandoned Cart Lite for Woocommerce
The Abandoned Cart Lite for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.8.5.
network
low complexity
tychesoftwares
4.3
2023-06-22 CVE-2019-25152 Unspecified vulnerability in Tychesoftwares products
The Abandoned Cart Lite for WooCommerce and Abandoned Cart Pro for WooCommerce plugins for WordPress are vulnerable to Stored Cross-Site Scripting via multiple parameters in versions up to, and including, 5.1.3 and 7.12.0 respectively, due to insufficient input sanitization and output escaping.
network
low complexity
tychesoftwares
6.1