CVE-2025-24644 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WebToffee WooCommerce PDF Invoices, Packing Slips, Deliver…
Medium CVSS: 4.8

CVE-2025-24644

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WebToffee WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels print-invoices-packing-slip-labels-for-woocommerce allows Stored XSS.This issue affects WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels: from n/a through <= 4.7.1.
Vendor
Webtoffee
Product
Woocommerce Pdf Invoices\, Packing Slips\, Delivery Notes And Shipping Labels
CWE
CWE-79
Yayın Tarihi
2025-01-24 18:15:38
Güncelleme
2026-04-01 17:17:58
Source Identifier
audit@patchstack.com
KEV Date Added
-

Kategoriler

Referanslar