Medium 5.8
2024-07-20< 5.2.0
CVE-2024-37943
Minimum safe version
5.2.0
Update to 5.2.0 or later to address 7 fixable vulnerabilities
CVE-2024-37943
YITH WooCommerce Ajax Product Filter <= 3.11.0 - Cross-Site Scripting
YITH plugins by YITHEMES <= (Various Versions) - Cross-Site Request Forgery
YITH plugins by YITHEMES <= (Various Versions) - Missing Authorization
WordPress YITH WooCommerce Ajax Product Filter Plugin <= 4.15.0 is vulnerable to Cross Site Request Forgery (CSRF)
YITH WooCommerce Ajax Product Filter < 3.11.1 - Authenticated Reflected Cross-Site Scripting (XSS)
WordPress YITH WooCommerce Ajax Product Filter plugin <= 3.11.0 - Authenticated Reflected Cross-Site Scripting (XSS) vulnerability