Vulnerabilities > Villatheme > High

DATE CVE VULNERABILITY TITLE RISK
2023-12-18 CVE-2023-48778 Unspecified vulnerability in Villatheme Product Size Chart for Woocommerce
Cross-Site Request Forgery (CSRF) vulnerability in VillaTheme Product Size Chart For WooCommerce.This issue affects Product Size Chart For WooCommerce: from n/a through 1.1.5.
network
low complexity
villatheme
8.8
2023-05-25 CVE-2022-46810 Cross-Site Request Forgery (CSRF) vulnerability in Villatheme Woocommerce Thank YOU Page Customizer 1.0.13
Cross-Site Request Forgery (CSRF) vulnerability in VillaTheme Thank You Page Customizer for WooCommerce – Increase Your Sales plugin <= 1.0.13 versions.
network
low complexity
villatheme CWE-352
8.8
2023-05-25 CVE-2022-46812 Cross-Site Request Forgery (CSRF) vulnerability in Villatheme Woocommerce Thank YOU Page Customizer 1.0.13
Cross-Site Request Forgery (CSRF) vulnerability in VillaTheme Thank You Page Customizer for WooCommerce – Increase Your Sales plugin <= 1.0.13 versions.
network
low complexity
villatheme CWE-352
8.8
2022-10-14 CVE-2022-41623 Unspecified vulnerability in Villatheme Dropshipping and Fulfillment for Aliexpress and Woocommerce
Sensitive Data Exposure in Villatheme ALD - AliExpress Dropshipping and Fulfillment for WooCommerce premium plugin <= 1.1.0 on WordPress.
network
low complexity
villatheme
7.5
2022-04-18 CVE-2022-1037 Unspecified vulnerability in Villatheme Exmage
The EXMAGE WordPress plugin before 1.0.7 does to ensure that images added via URLs are external images, which could lead to a blind SSRF issue by using local URLs
network
low complexity
villatheme
7.2