woocommerce Known Exploited Vulnerabilities

Evidence-backed KEV intelligence for woocommerce products — CISA KEV status, confidence, sensor telemetry, and virtual-patch availability.

Total KEVs

2

In CISA KEV

0

Beyond CISA KEV

2

Sensor Observed

0

Virtual Patch Available

0

woocommerce KEVs Added by Year

Loading...

2 woocommerce KEVs added all time (primary attestation date).

Attested CVEs

CVE Confidence CISA KEV Added
CVE-2023-28121

An issue in WooCommerce Payments plugin for WordPress (versions 5.6.1 and lower) allows an unauthenticated attacker to send requests on behalf of...

High Not in CISA 17 Jul 2023
CVE-2021-32790

Blind SQL Injection possible via Authenticated Web-hook Search API Endpoint

High Not in CISA 26 Jul 2021

Common Vulnerability Classes (CWE)

  • CWE-287 — Improper Authentication 1
  • CWE-89 — Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') 1

Browse all known exploited vulnerabilities · What is a known exploited vulnerability? · Methodology