Skip to content

Known CVE

Woo Bulk Price Update <2.2.2 - Cross-Site Scripting

The Woo Bulk Price Update WordPress plugin, in versions < 2.2.2, is affected by a reflected cross-site scripting vulnerability in the 'page' parameter to the techno_get_products action, which can only be triggered by an authenticated user.

CVE-2023-28665

Medium2023CVSS 5.4CWE-79

cve2023 · wordpress · wp · wp-plugin · wpscan · xss · authenticated · woo-bulk-price-update

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website