N/A
2023-07-19< 2.0.4
WordPress CO2ok: carbon offsetting for e-commerce Plugin <= 1.0.9.9 is vulnerable to Cross Site Scripting (XSS)
Minimum safe version
2.0.4
Update to 2.0.4 or later to address 7 fixable vulnerabilities
WordPress CO2ok: carbon offsetting for e-commerce Plugin <= 1.0.9.9 is vulnerable to Cross Site Scripting (XSS)
Freemius SDK <= 2.2.3 - Missing Authorization to Arbitrary Options Update
Freemius SDK <= 2.4.2 - Missing Authorization Checks
CO2ok: carbon offsetting for e-commerce <= 1.0.9.21 - Cross-Site Scripting
Freemius Library < 2.2.4 - Subscriber+ Arbitrary Option Update
WordPress CO2ok: carbon offsetting for e-commerce plugin <= 1.0.9.21 - Sensitive Information Disclosure vulnerability
WordPress CO2ok: carbon offsetting for e-commerce plugin <= 1.0.9.21 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability