Known Vulnerabilities for Woo-confirmation-email by Xlplugins
Listed below are 1 of the newest known vulnerabilities associated with "Woo-confirmation-email" by "Xlplugins".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-63100 json | Maybe through 0.6.0 contains a missing authorization vulnerability that allows authenticated low-privilege member-role users ... | Not Provided | 2026-07-17 | 2026-07-21 |
| CVE-2026-53642 json | FOSSBilling is a free, open-source billing and client management system. In versions 0.5.6 through 0.7.2, when the "Require E... | Not Provided | 2026-07-06 | 2026-07-07 |
| CVE-2026-48745 json | Traccar Client is a GPS tracking mobile app for sending location updates to private servers using the open-source Traccar pla... | Not Provided | 2026-06-17 | 2026-06-17 |
| CVE-2026-45035 json | Tabby (formerly Terminus) is a highly configurable terminal emulator. Prior to 1.0.233, Tabby registers itself as the handler... | Not Provided | 2026-05-15 | 2026-05-15 |
| CVE-2026-44707 json | Chatwoot is a customer engagement suite. From 2.14.0 to before 4.13.0, a Pre-Account Takeover (Pre-ATO) vulnerability existed... | Not Provided | 2026-05-26 | 2026-05-26 |
| CVE-2026-43926 json | FOSSBilling is a free, open-source billing and client management system. Prior to version 0.8.0, the password reset confirmat... | Not Provided | 2026-06-04 | 2026-06-04 |
| CVE-2026-35675 json | phpMyFAQ before 4.1.3 contains an authentication bypass vulnerability in the password reset endpoint that allows unauthentica... | Not Provided | 2026-05-28 | 2026-05-29 |
| CVE-2026-32824 json | dataCycle is a data management system for centrally storing, managing, searching, finding, and distributing data. In dataCycl... | Not Provided | 2026-07-20 | 2026-07-20 |
| CVE-2026-13225 json | Malicious HTML content could be injected into the email address of an order, which pretix showed without sanitization on the... | Not Provided | 2026-06-25 | 2026-06-25 |
| CVE-2026-9732 json | The EmergencyWP – Dead Man's switch & legacy deliverance plugin for WordPress is vulnerable to Cross-Site Request Forgery i... | Not Provided | 2026-06-03 | 2026-06-03 |