Medium 6.1
2026-05-01≤ 2.8.4
CVE-2024-13362
Minimum safe version
2.8.3
Update to 2.8.3 or later to address 6 fixable vulnerabilities
CVE-2024-13362
Freemius SDK <= 2.4.2 - Missing Authorization Checks
CVE-2024-9178
WordPress XT Floating Cart for WooCommerce Plugin <= 2.7.3 is vulnerable to Cross Site Scripting (XSS)
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress XT Floating Cart for WooCommerce plugin <= 2.6.2 - Sensitive Information Disclosure vulnerability
WordPress XT Floating Cart for WooCommerce plugin <= 2.6.2 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability