Known Vulnerabilities for Cart All In One For Woocommerce by Villatheme
Listed below are 1 of the newest known vulnerabilities associated with "Cart All In One For Woocommerce" by "Villatheme".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-92436 json | The Mailchimp for WooCommerce WordPress plugin before 6.3 does not require authentication or verify ownership before loading ... | Not Provided | 2026-09-27 | 2026-09-28 |
| CVE-2026-84908 json | The WPFunnels plugin for WordPress is vulnerable to Missing Authorization in versions up to, and including, 3.12.13. This is ... | Not Provided | 2026-09-09 | 2026-09-09 |
| CVE-2026-81543 json | The Abandoned Cart Pro for WooCommerce plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and ... | Not Provided | 2026-09-05 | 2026-09-07 |
| CVE-2026-76801 json | The FireBox – WooCommerce Popup Builder, Exit Intent Popup, Email Optin & Cart Abandonment plugin for WordPress is vulnerab... | Not Provided | 2026-09-09 | 2026-09-09 |
| CVE-2026-76009 json | The Next-Cart Store to WooCommerce Migration plugin for WordPress is vulnerable to Authentication Bypass in all versions up t... | Not Provided | 2026-09-09 | 2026-09-09 |
| CVE-2026-66682 json | Unauthenticated Privilege Escalation in Abandoned Cart Pro for WooCommerce <= 10.4.0 versions. | Not Provided | 2026-08-20 | 2026-08-20 |
| CVE-2026-66466 json | Unauthenticated Broken Access Control in StoreGrowth: Smart Sales Booster for WooCommerce | BOGO, Upsells, Direct Checkout, Q... | Not Provided | 2026-08-13 | 2026-08-13 |
| CVE-2026-65557 json | Shop manager Cross Site Scripting (XSS) in Abandoned Cart Lite for WooCommerce <= 6.8.0 versions. | Not Provided | 2026-07-27 | 2026-07-27 |
| CVE-2026-57857 json | The Flow Payment plugin for WordPress (flow.cl) version 3.0.8 is vulnerable to reflected cross-site scripting on the WooComme... | Not Provided | 2026-07-18 | 2026-07-20 |
| CVE-2026-57698 json | Authentication Bypass Using an Alternate Path or Channel vulnerability in VillaTheme Abandoned Cart Recovery for WooCommerce ... | Not Provided | 2026-07-13 | 2026-07-13 |