Known Vulnerabilities for products from Wpovernight

Listed below are 9 of the newest known vulnerabilities associated with the vendor "Wpovernight".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2024-22147 json Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WP Overnight PDF Invoic... Not Provided 2024-01-27 2026-04-28
CVE-2024-3047 json The PDF Invoices & Packing Slips for WooCommerce plugin for WordPress is vulnerable to Server-Side Request Forgery in version... Not Provided 2024-05-02 2026-04-08
CVE-2024-3045 json The PDF Invoices & Packing Slips for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via severa... Not Provided 2024-05-02 2026-04-08
CVE-2023-34170 json Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in WP Overnight Quick/Bulk Order Form for WooCommerce plugin <... 4.8 - MEDIUM 2023-06-22 2023-06-28
CVE-2022-47148 json Cross-Site Request Forgery (CSRF) vulnerability in WP Overnight PDF Invoices & Packing Slips for WooCommerce plugin <= 3.2.5 ... 4.3 - MEDIUM 2023-03-01 2023-11-07
CVE-2022-2537 json The WooCommerce PDF Invoices & Packing Slips WordPress plugin before 3.0.1 does not sanitise and escape some parameters befor... 6.1 - MEDIUM 2022-08-29 2022-09-01
CVE-2022-2092 json The WooCommerce PDF Invoices & Packing Slips WordPress plugin before 2.16.0 doesn't escape a parameter on its setting page, m... 6.1 - MEDIUM 2022-07-11 2022-07-18
CVE-2021-24991 json The WooCommerce PDF Invoices & Packing Slips WordPress plugin before 2.10.5 does not escape the tab and section parameters be... 4.8 - MEDIUM 2022-01-03 2022-01-08
CVE-2017-18506 json The woocommerce-pdf-invoices-packing-slips plugin before 2.0.13 for WordPress has XSS via the tab or section variable on sett... 6.1 - MEDIUM 2019-08-12 2019-08-16

Known software with vulnerabilities from Wpovernight

Type Vendor Product Version
ApplicationWpovernightWoocommerce Pdf Invoicesamp Packing Slips1.6.6