Medium 6.5
2026-04-22< 4.6.5
WordPress Order Minimum/Maximum Amount Limits for WooCommerce Plugin <= 4.6.4 is vulnerable to Cross Site Scripting (XSS)
Minimum safe version
4.6.9
Update to 4.6.9 or later to address 2 fixable vulnerabilities
WordPress Order Minimum/Maximum Amount Limits for WooCommerce Plugin <= 4.6.4 is vulnerable to Cross Site Scripting (XSS)
Order Minimum/Maximum Amount Limits for WooCommerce <= 4.6.8 - Authenticated (Shop Manager+) Stored Cross-Site Scripting via Hide Add to Cart Content Fields