Known Vulnerabilities for products from Storeapps

Listed below are 7 of the newest known vulnerabilities associated with the vendor "Storeapps".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-24365 json Not Provided 2026-01-22 2026-04-28
CVE-2025-22710 json Not Provided 2025-01-21 2026-04-23
CVE-2024-49687 json Not Provided 2024-12-31 2026-04-23
CVE-2023-35091 json Cross-Site Request Forgery (CSRF) vulnerability in storeapps Stock Manager for WooCommerce woocommerce-stock-manager allows C... Not Provided 2023-07-11 2026-04-23
CVE-2023-5663 json The News Announcement Scroll plugin for WordPress is vulnerable to SQL Injection via the plugin's shortcode in versions up to... Not Provided 2024-03-13 2026-04-08
CVE-2022-40694 json Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in News Announcement Scroll plugin <= 8.8.8 on WordPress. 4.8 - MEDIUM 2022-11-17 2022-11-22
CVE-2022-36284 json Authenticated IDOR vulnerability in StoreApps Affiliate For WooCommerce premium plugin <= 4.7.0 at WordPress allows an attack... 6.5 - MEDIUM 2022-08-05 2022-08-10
CVE-2022-25649 json Multiple Improper Access Control vulnerabilities in StoreApps Affiliate For WooCommerce premium plugin <= 4.7.0 at WordPress. 8.8 - HIGH 2022-08-05 2023-06-27
CVE-2021-34619 json The WooCommerce Stock Manager WordPress plugin is vulnerable to Cross-Site Request Forgery leading to Arbitrary File Upload i... 8.8 - HIGH 2021-07-21 2023-07-18
CVE-2021-24836 json The Temporary Login Without Password WordPress plugin before 1.7.1 does not have authorisation and CSRF checks when updating ... 4.3 - MEDIUM 2021-12-13 2022-08-04