Vulnerabilities > Wpovernight > High

DATE CVE VULNERABILITY TITLE RISK
2024-10-23 CVE-2024-9927 Improper Authentication vulnerability in Wpovernight Woocommerce Order Proposal
The WooCommerce Order Proposal plugin for WordPress is vulnerable to privilege escalation via order proposal in all versions up to and including 2.0.5.
network
low complexity
wpovernight CWE-287
7.2
2024-01-27 CVE-2024-22147 Unspecified vulnerability in Wpovernight Woocommerce PDF Invoices& Packing Slips
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WP Overnight PDF Invoices & Packing Slips for WooCommerce.This issue affects PDF Invoices & Packing Slips for WooCommerce: from n/a through 3.7.5.
network
low complexity
wpovernight
7.2