N/A
2026-04-22< 2.3.7
ReviewX – Multi-Criteria Reviews for WooCommerce with Google Reviews & Schema <= 2.3.6 - Missing Authorization
Minimum safe version
2.3.7
Update to 2.3.7 or later to address 15 fixable vulnerabilities
ReviewX – Multi-Criteria Reviews for WooCommerce with Google Reviews & Schema <= 2.3.6 - Missing Authorization
CVE-2025-10734
CVE-2025-10731
CVE-2025-10679
CVE-2025-10736
CVE-2024-43323
CVE-2024-3609
CVE-2024-33921
CVE-2024-29812
CVE-2023-40670
ReviewX < 1.2.9 - Unauthorised AJAX call via CSRF
CVE-2023-2833
CVE-2022-46809
ReviewX – Multi-criteria Rating & Reviews for WooCommerce <= 1.6.8 - Authenticated (Subscriber+) SQL Injection
WooCommerce Reviews Plugin with Multi-criteria Rating by ReviewX < 1.2.9 - Cross-Site Request Forgery