Filtered by vendor Welcart Subscriptions
Total 43 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2021-20734 1 Welcart 1 Welcart E-commerce 2025-02-20 6.1 Medium
Cross-site scripting vulnerability in Welcart e-Commerce versions prior to 2.2.4 allows remote attackers to inject arbitrary script or HTML via unspecified vectors.
CVE-2023-5952 1 Welcart 1 Welcart E-commerce 2025-02-20 9.8 Critical
The Welcart e-Commerce WordPress plugin before 2.9.5 unserializes user input from cookies, which could allow unautehtniacted users to perform PHP Object Injection when a suitable gadget is present on the blog
CVE-2024-32144 1 Welcart 1 Welcart E-commerce 2024-11-21 5.4 Medium
Missing Authorization vulnerability in Welcart Inc. Welcart e-Commerce.This issue affects Welcart e-Commerce: from n/a through 2.9.14.