Vulnerabilities > Wp3Sixty

DATE CVE VULNERABILITY TITLE RISK
2023-10-17 CVE-2023-45004 Cross-site Scripting vulnerability in Wp3Sixty WOO Custom Emails 2.2
Unauth.
network
low complexity
wp3sixty CWE-79
6.1
2023-08-31 CVE-2023-4315 Unspecified vulnerability in Wp3Sixty WOO Custom Emails 2.2
The Woo Custom Emails for WordPress is vulnerable to Reflected Cross-Site Scripting via the wcemails_edit parameter in versions up to, and including, 2.2 due to insufficient input sanitization and output escaping.
network
low complexity
wp3sixty
6.1