plugin

Star Cloudprnt For Woocommerce Vulnerabilities

4 known security issues reported for the Star Cloudprnt For Woocommerce WordPress plugin. Most recent disclosed Nov 16, 2023.

2 medium

Running Star Cloudprnt For Woocommerce on your site? Check whether your installed version is affected.

Scan your site free

Star CloudPRNT for WooCommerce [star-cloudprnt-for-woocommerce] <= 2.0.3 (unfixed + closed)

unknown

[en] Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in lawrenceowen, gcubero, acunnningham, fmahmood Star CloudPRNT for WooCommerce plugin <= 2.0.3 versions.

Affected:
up to 2.0.3
Fix:
No patched version reported
Disclosed:
Nov 16, 2023

CVE-2023-47514 on NVD →

Star CloudPRNT for WooCommerce <= 2.0.3 - Reflected Cross-Site Scripting

medium

The Star CloudPRNT for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'printersettings' parameter in versions up to, and including, 2.0.3 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web sc...

CVSS:
6.1
Affected:
up to 2.0.3
Fixed in:
2.0.4
Disclosed:
Nov 13, 2023

CVE-2023-4603 on NVD →

Star CloudPRNT for WooCommerce [star-cloudprnt-for-woocommerce] < 2.0.4 (closed)

unknown

[en] The Star CloudPRNT for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'printersettings' parameter in versions up to, and including, 2.0.3 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary w...

Affected:
up to 2.0.4
Fixed in:
2.0.4
Disclosed:
Nov 13, 2023

CVE-2023-4603 on NVD →

Star CloudPRNT for WooCommerce <= 2.0.3 - Unauthenticated Cross-Site Scripting

medium

The Star CloudPRNT for WooCommerce plugin for WordPress is vulnerable to Cross-Site Scripting in versions up to, and including, 2.0.3 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a use...

CVSS:
6.1
Affected:
up to 2.0.3
Fix:
No patched version reported
Disclosed:
Nov 7, 2023

CVE-2023-47514 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database