N/A Unfixed
2023-07-18≤ 4.5.2
WordPress Finpose – Accounting for WooCommerce Plugin <= 4.5.2 is vulnerable to Cross Site Scripting (XSS)
Minimum safe version
4.4.3
Update to 4.4.3 or later to address 3 fixable vulnerabilities
WordPress Finpose – Accounting for WooCommerce Plugin <= 4.5.2 is vulnerable to Cross Site Scripting (XSS)
Unauthorised AJAX Calls via Freemius
WordPress Finpose – Accounting for WooCommerce plugin <= 4.4.2 - Sensitive Information Disclosure vulnerability
WordPress Finpose – Accounting for WooCommerce plugin <= 4.4.2 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability