Skip to content

Known CVE

WooCommerce PDF Invoices & Packing Slips WordPress Plugin < 2.10.5 - Cross-Site Scripting

The Wordpress plugin WooCommerce PDF Invoices & Packing Slips before 2.10.5 does not escape the tab and section parameters before reflecting it an attribute, leading to a reflected cross-site scripting in the admin dashboard.

CVE-2021-24991

Medium2021CVSS 4.8CWE-79

cve2021 · xss · wp · wordpress · wp-plugin · authenticated · wpscan · wpovernight

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website