Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in RexTheme Cart Lift – Abandoned Cart Recovery for WooCommerce and EDD plugin <= 3.1.5 versions.
References
Configurations
Configuration 1 (hide)
|
History
10 May 2023, 18:20
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://patchstack.com/database/vulnerability/cart-lift/wordpress-cart-lift-abandoned-cart-recovery-for-woocommerce-and-edd-plugin-3-1-5-cross-site-scripting-xss?_s_id=cve - Third Party Advisory | |
CPE | cpe:2.3:a:rextheme:cart_lift_-_abandoned_cart_recovery_for_woocommerce_and_edd:*:*:*:*:*:wordpress:*:* | |
First Time |
Rextheme
Rextheme cart Lift - Abandoned Cart Recovery For Woocommerce And Edd |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.1 |
04 May 2023, 21:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-05-04 21:15
Updated : 2023-05-10 18:20
NVD link : CVE-2022-47449
Mitre link : CVE-2022-47449
JSON object : View
Products Affected
rextheme
- cart_lift_-_abandoned_cart_recovery_for_woocommerce_and_edd
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')