CVE-2024-37522
21.07.2024, 08:15
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Dario Curas CC & BCC for Woocommerce Order Emails allows Stored XSS.This issue affects CC & BCC for Woocommerce Order Emails: from n/a through 1.4.1.
Vendor | Product | Version |
---|---|---|
dcurasi | cc_\&_bcc_for_woocommerce_order_emails | 𝑥 ≤ 1.4.1 |
𝑥
= Vulnerable software versions
References