Medium 6.1
2026-05-01< 1.9.7
CVE-2024-13362
Minimum safe version
1.9.7
Update to 1.9.7 or later to address 6 fixable vulnerabilities
CVE-2024-13362
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress XT Variation Swatches for WooCommerce Plugin <= 1.8.7 is vulnerable to Cross Site Scripting (XSS)
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress XT Variation Swatches for WooCommerce plugin <= 1.8.0 - Sensitive Information Disclosure vulnerability
WordPress XT Variation Swatches for WooCommerce plugin <= 1.8.0 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability