Vulnerabilities > Woocommerce > High

DATE CVE VULNERABILITY TITLE RISK
2019-01-15 CVE-2017-18356 Code Injection vulnerability in Woocommerce
In the Automattic WooCommerce plugin before 3.2.4 for WordPress, an attack is possible after gaining access to the target site with a user account that has at least Shop manager privileges.
network
low complexity
woocommerce CWE-94
8.8