Security Advisory

CVE-2023-2256

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-05-30 07:49:09
Last updated 2025-01-10 17:38:12
Assigner WPScan
CVSS score not scored
State PUBLISHED

Description

The Product Addons & Fields for WooCommerce WordPress plugin before 32.0.7 does not sanitize and escape some URL parameters, leading to Reflected Cross-Site Scripting.