Known Vulnerabilities for WooCommerce POS by Kilbot
Listed below are 10 of the newest known vulnerabilities associated with "WooCommerce POS" by "Kilbot".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-54815 json | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Cargo RD Cargo Shipping... | Not Provided | 2026-06-17 | 2026-06-17 |
| CVE-2026-54807 json | Unauthenticated Privilege Escalation in Registration Form for WooCommerce <= 1.0.9 versions. | Not Provided | 2026-06-17 | 2026-06-17 |
| CVE-2026-52711 json | Unauthenticated Broken Access Control in WooCommerce POS <= 1.8.14 versions. | Not Provided | 2026-06-16 | 2026-06-16 |
| CVE-2026-52704 json | Improper Control of Generation of Code ('Code Injection') vulnerability in Edgar Rojas WooCommerce PDF Invoice Builder allows... | Not Provided | 2026-06-15 | 2026-06-15 |
| CVE-2026-52694 json | Unauthenticated Sensitive Data Exposure in Signature Add-On for WooCommerce <= 2.0 versions. | Not Provided | 2026-06-15 | 2026-06-15 |
| CVE-2026-49777 json | Improper Validation of Specified Quantity in Input vulnerability in ShapedPlugin, LLC Product Slider Pro for WooCommerce allo... | Not Provided | 2026-06-05 | 2026-06-08 |
| CVE-2026-49110 json | Unauthenticated Broken Authentication in Upsell Order Bump Offer for WooCommerce <= 3.1.4 versions. | Not Provided | 2026-06-15 | 2026-06-15 |
| CVE-2026-49072 json | Unauthenticated Broken Access Control in WooCommerce Anti-Fraud <= 7.2.6 versions. | Not Provided | 2026-06-17 | 2026-06-17 |
| CVE-2026-49071 json | Unauthenticated Broken Authentication in WooCommerce Dropshipping <= 5.2.4 versions. | Not Provided | 2026-06-17 | 2026-06-17 |
| CVE-2026-49065 json | Unauthenticated Broken Access Control in Hippoo Mobile App for WooCommerce <= 1.9.5 versions. | Not Provided | 2026-06-15 | 2026-06-15 |