{"error":0,"message":null,"data":{"name":"PDF Invoices &amp; Packing Slips for WooCommerce","plugin":"woocommerce-pdf-invoices-packing-slips","link":"https:\/\/wordpress.org\/plugins\/woocommerce-pdf-invoices-packing-slips\/","latest":"1787298180","closed":0,"closed_reason":null,"closed_date":null,"vulnerability":[{"uuid":"91efdf434115a57cc877b07fdbea2e9f0a5062d9f2a9c27d3ed02f77a2717852","name":"PDF Invoices &amp; Packing Slips for WooCommerce [woocommerce-pdf-invoices-packing-slips] < 2.10.5","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"2.10.5","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2021-24991","name":"CVE-2021-24991","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2021-24991","description":"[en] The WooCommerce PDF Invoices & Packing Slips WordPress plugin before 2.10.5 does not escape the tab and section parameters before outputting it back in an attribute, leading to a Reflected Cross-Site Scripting in the admin dashboard","date":"2022-01-03"},{"id":"1902a42f0f74fcbcc4a462ee0334599a44bca1c3","name":"WordPress WooCommerce PDF Invoices & Packing Slips plugin <= 2.10.4 - Reflected Cross-Site Scripting (XSS) vulnerability","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/woocommerce-pdf-invoices-packing-slips\/vulnerability\/wordpress-woocommerce-pdf-invoices-packing-slips-plugin-2-10-4-reflected-cross-site-scripting-xss-vulnerability","description":"Reflected Cross-Site Scripting (XSS) vulnerability discovered by Krzysztof Zaj\u0105c in WordPress WooCommerce PDF Invoices & Packing Slips plugin (versions <= 2.10.4).","date":"2021-12-06"},{"id":"bfff28eca372ba6fab69fba58ade8a0054f56a7d","name":"WooCommerce PDF Invoices & Packing Slips <= 2.10.4 - Reflected Cross-Site Scripting via tab and section parameter","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/woocommerce-pdf-invoices-packing-slips\/woocommerce-pdf-invoices-packing-slips-2104-reflected-cross-site-scripting-via-tab-and-section-parameter","description":"The WooCommerce PDF Invoices & Packing Slips WordPress plugin before 2.10.5 does not escape the tab and section parameters before outputting it back in an attribute, leading to a Reflected Cross-Site Scripting in the admin dashboard","date":"2021-12-06"},{"id":"88e706df-ae03-4665-94a3-db226e1f31a9","name":"WooCommerce PDF Invoices &amp; Packing Slips &lt; 2.10.5 - Reflected Cross-Site Scripting","link":"https:\/\/wpscan.com\/vulnerability\/88e706df-ae03-4665-94a3-db226e1f31a9","description":"The plugin does not escape the tab and section parameters before outputting it back in an attribute, leading to a Reflected Cross-Site Scripting in the admin dashboard","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:R\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"h","ui":"r","s":"c","c":"l","i":"l","a":"n","score":"4.8","severity":"m","exploitable":"1.7","impact":"2.7"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:R\/S:C\/C:L\/I:L\/A:N","score":"4.8","severity":"medium","av":"network","ac":"low","pr":"high","ui":"required","s":"changed","c":"low","i":"low","a":"none","exploitable":"1.7","impact":"2.7"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}]}},{"uuid":"c8de47be1efddba57a3dbb4d7e83a064b7bc8484e1cf2a6c87af8fca0c2d7a1b","name":"PDF Invoices &amp; Packing Slips for WooCommerce [woocommerce-pdf-invoices-packing-slips] < 2.0.13","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"2.0.13","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2017-18506","name":"CVE-2017-18506","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2017-18506","description":"[en] The woocommerce-pdf-invoices-packing-slips plugin before 2.0.13 for WordPress has XSS via the tab or section variable on settings screens.","date":"2019-08-12"},{"id":"4f34c15ca680abc7664e534a1b358314caeef009","name":"WooCommerce PDF Invoices & Packing Slips <= 2.0.12 - Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/woocommerce-pdf-invoices-packing-slips\/woocommerce-pdf-invoices-packing-slips-2012-cross-site-scripting","description":"The woocommerce-pdf-invoices-packing-slips plugin before 2.0.13 for WordPress has XSS via the tab or section variable on settings screens.","date":"2017-10-02"},{"id":"b42f03a7-bc0f-41d4-8bc2-2e5c63dfb2e3","name":"Woocommerce PDF Invoices Packing Slips &lt; 2.0.13 - XSS","link":"https:\/\/wpscan.com\/vulnerability\/b42f03a7-bc0f-41d4-8bc2-2e5c63dfb2e3","description":"The WooCommerce PDF Invoices &amp; Packing Slips WordPress plugin was affected by a XSS security vulnerability.","date":null}],"impact":{"cvss":{"version":"3.0","vector":"CVSS:3.0\/AV:N\/AC:L\/PR:N\/UI:R\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"n","ui":"r","s":"c","c":"l","i":"l","a":"n","score":"6.1","severity":"m","exploitable":"2.8","impact":"2.7"},"cvss3":{"version":"3.0","vector":"CVSS:3.0\/AV:N\/AC:L\/PR:N\/UI:R\/S:C\/C:L\/I:L\/A:N","score":"6.1","severity":"medium","av":"network","ac":"low","pr":"none","ui":"required","s":"changed","c":"low","i":"low","a":"none","exploitable":"2.8","impact":"2.7"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}]}},{"uuid":"985b910bbd00472cd8d922ef165dd6a8389a84e5bf149f790ec3ff0e8358f343","name":"PDF Invoices &amp; Packing Slips for WooCommerce [woocommerce-pdf-invoices-packing-slips] < 2.0.13","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"2.0.13","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"00e06994a4558523e3ffe1f712444d1ab8e4cbd5","name":"WordPress WooCommerce PDF Invoices & Packing Slips plugin <=2.0.12 - Cross-Site Scripting (XSS) vulnerability","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/woocommerce-pdf-invoices-packing-slips\/vulnerability\/wordpress-woocommerce-pdf-invoices-packing-slips-plugin-2-0-12-cross-site-scripting-xss-vulnerability","description":"Cross-Site Scripting (XSS) vulnerability found by Detectify in WordPress WooCommerce PDF Invoices & Packing Slips plugin (versions <=2.0.12).","date":"2017-10-05"}],"impact":[]},{"uuid":"a260e821b67ae82b5225acabade44b9328fae447a97feb2ed8bc5246d6498b29","name":"PDF Invoices &amp; Packing Slips for WooCommerce [woocommerce-pdf-invoices-packing-slips] < 2.15.0","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"2.15.0","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"d0abab899758e6f16361787239cd5377f486201b","name":"WordPress WooCommerce PDF Invoices & Packing Slips plugin <= 2.14.5 - Reflected Cross-Site Scripting (XSS) vulnerability","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/woocommerce-pdf-invoices-packing-slips\/vulnerability\/wordpress-woocommerce-pdf-invoices-packing-slips-plugin-2-14-5-reflected-cross-site-scripting-xss-vulnerability","description":"Reflected Cross-Site Scripting (XSS) vulnerability discovered in WordPress WooCommerce PDF Invoices & Packing Slips plugin (versions <= 2.14.5).\nUpdate the WordPress WooCommerce PDF Invoices & Packing Slips plugin to the latest available (at least 2.15.0).","date":"2022-06-07"}],"impact":[]},{"uuid":"5f0548b36895685db746113b84f5c5a1ca80fe726958bf6b85d003a484cdceda","name":"PDF Invoices &amp; Packing Slips for WooCommerce [woocommerce-pdf-invoices-packing-slips] < 2.16.0","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"2.16.0","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2022-2092","name":"CVE-2022-2092","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2022-2092","description":"[en] The WooCommerce PDF Invoices & Packing Slips WordPress plugin before 2.16.0 doesn't escape a parameter on its setting page, making it possible for attackers to conduct reflected cross-site scripting attacks.","date":"2022-07-11"},{"id":"35856c3a28723ffa8b62125c21f23f262f776cbb","name":"WordPress WooCommerce PDF Invoices & Packing Slips plugin <= 2.15.0 - Reflected Cross-Site Scripting (XSS) vulnerability","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/woocommerce-pdf-invoices-packing-slips\/vulnerability\/wordpress-woocommerce-pdf-invoices-packing-slips-plugin-2-15-0-reflected-cross-site-scripting-xss-vulnerability","description":"Reflected Cross-Site Scripting (XSS) vulnerability discovered by ZhongFu Su aka JrXnm (WuHan University) in WordPress WooCommerce PDF Invoices & Packing Slips plugin (versions <= 2.15.0).\nUpdate the WordPress WooCommerce PDF Invoices & Packing Slips plugin to the latest available version (at least 2.16.0).","date":"2022-06-20"},{"id":"b3367ba000e8b84ab2945aa1557fbcb89f78ad7a","name":"WooCommerce PDF Invoices & Packing Slips <= 2.15.0 - Reflected Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/woocommerce-pdf-invoices-packing-slips\/woocommerce-pdf-invoices-packing-slips-2150-reflected-cross-site-scripting","description":"The WooCommerce PDF Invoices & Packing Slips plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'preview' parameter in versions up to, and including, 2.15.0 due to insufficient input sanitization and output escaping. This makes it possible for attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.","date":"2022-06-16"},{"id":"87546554-276a-45fe-b2aa-b18bfc55db2d","name":"WooCommerce PDF Invoices &amp; Packing Slips &lt; 2.16.0 - Reflected Cross-Site Scripting","link":"https:\/\/wpscan.com\/vulnerability\/87546554-276a-45fe-b2aa-b18bfc55db2d","description":"The plugin doesn&#039;t escape a parameter on its setting page, making it possible for attackers to conduct reflected cross-site scripting attacks.","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:R\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"n","ui":"r","s":"c","c":"l","i":"l","a":"n","score":"6.1","severity":"m","exploitable":"2.8","impact":"2.7"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:R\/S:C\/C:L\/I:L\/A:N","score":"6.1","severity":"medium","av":"network","ac":"low","pr":"none","ui":"required","s":"changed","c":"low","i":"low","a":"none","exploitable":"2.8","impact":"2.7"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}]}},{"uuid":"b9030890e04f7d44597f57f7392fab8e7554b303484ad584af0a5fad9d52b968","name":"PDF Invoices &amp; Packing Slips for WooCommerce [woocommerce-pdf-invoices-packing-slips] < 3.0.1","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.0.1","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2022-2537","name":"CVE-2022-2537","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2022-2537","description":"[en] The WooCommerce PDF Invoices & Packing Slips WordPress plugin before 3.0.1 does not sanitise and escape some parameters before outputting them back in an attributes of an admin page, leading to Reflected Cross-Site Scripting.","date":"2022-08-29"},{"id":"283be39870509381639c7309bc3c280aed9da641","name":"WordPress WooCommerce PDF Invoices & Packing Slips plugin <= 3.0.0 - Reflected Cross-Site Scripting (XSS) vulnerability","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/woocommerce-pdf-invoices-packing-slips\/vulnerability\/wordpress-woocommerce-pdf-invoices-packing-slips-plugin-3-0-0-reflected-cross-site-scripting-xss-vulnerability","description":"Reflected Cross-Site Scripting (XSS) vulnerability discovered by Krzysztof Zaj\u0105c in WordPress WooCommerce PDF Invoices & Packing Slips plugin (versions <= 3.0.0).\nUpdate the WordPress WooCommerce PDF Invoices & Packing Slips plugin to the latest available version (at least 3.0.1).","date":"2022-08-03"},{"id":"bc0b2b1c4e7f5bc32e5b30d534067f1d167ba69a","name":"WooCommerce PDF Invoices & Packing Slips 2.14.0 - 3.0.0 - Reflected Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/woocommerce-pdf-invoices-packing-slips\/woocommerce-pdf-invoices-packing-slips-2140-300-reflected-cross-site-scripting","description":"The WooCommerce PDF Invoices & Packing Slips plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions 2.14.0 up to 3.0.0 via its tabs and section parameters due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.","date":"2022-08-03"},{"id":"ae613148-85d8-47a0-952d-49c29584676f","name":"WooCommerce PDF Invoices &amp; Packing Slips &lt; 3.0.1 - Reflected Cross-Site Scripting","link":"https:\/\/wpscan.com\/vulnerability\/ae613148-85d8-47a0-952d-49c29584676f","description":"The plugin does not sanitise and escape some parameters before outputting them back in an attributes of an admin page, leading to Reflected Cross-Site Scripting.\r\n\r\nThis is a re-introduction of CVE-2021-24991 in 2.14.0","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:R\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"n","ui":"r","s":"c","c":"l","i":"l","a":"n","score":"6.1","severity":"m","exploitable":"2.8","impact":"2.7"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:R\/S:C\/C:L\/I:L\/A:N","score":"6.1","severity":"medium","av":"network","ac":"low","pr":"none","ui":"required","s":"changed","c":"low","i":"low","a":"none","exploitable":"2.8","impact":"2.7"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}]}},{"uuid":"2eab58fcbce48a7a79ea1fd59b4e3729c34027fd07c906e48c5473d99bc5af86","name":"PDF Invoices &amp; Packing Slips for WooCommerce [woocommerce-pdf-invoices-packing-slips] < 2.15","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"2.15","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"0cbb9917292ae21a719ccaaffc36994ba80be8ee","name":"WooCommerce PDF Invoices & Packing Slips <=  2.14.5 - Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/woocommerce-pdf-invoices-packing-slips\/woocommerce-pdf-invoices-packing-slips-2145-cross-site-scripting","description":"The WooCommerce PDF Invoices & Packing Slips plugin for WordPress is vulnerable to Reflected Cross-Site Scripting  in versions up to, and including, 2.14.5 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.","date":"2022-06-07"}],"impact":[]},{"uuid":"dc05ec9742c0b48d92e97393a5c75314723a04826ef392cd7241a338778e9f28","name":"PDF Invoices &amp; Packing Slips for WooCommerce [woocommerce-pdf-invoices-packing-slips] < 3.2.6","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.2.6","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2022-47148","name":"CVE-2022-47148","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2022-47148","description":"[en] Cross-Site Request Forgery (CSRF) vulnerability in WP Overnight PDF Invoices & Packing Slips for WooCommerce plugin <=\u00a03.2.5 leading to popup dismiss.","date":"2023-03-01"},{"id":"8e55a173529ef92d347746b893e31a3f2da0249a","name":"WordPress  WooCommerce PDF Invoices & Packing Slips Plugin  <= 3.2.5 is vulnerable to Cross Site Request Forgery (CSRF)","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/woocommerce-pdf-invoices-packing-slips\/vulnerability\/wordpress-pdf-invoices-packing-slips-for-woocommerce-plugin-3-2-5-cross-site-request-forgery-csrf","description":"Update the WordPress WooCommerce PDF Invoices & Packing Slips plugin to the latest available version (at least 3.2.6).\nMuhammad Daffa discovered and reported this Cross Site Request Forgery (CSRF) vulnerability in WordPress WooCommerce PDF Invoices & Packing Slips Plugin. This could allow a malicious actor to force higher privileged users to execute unwanted actions under their current authentication. For example a password change which will then allow the malicious actor to login into the admin account. This vulnerability has been fixed in version 3.2.6.","date":"2023-01-27"},{"id":"0cc91c6345902beccfb56523c4938a69dfdd5930","name":"WooCommerce PDF Invoices & Packing Slips <= 3.2.5 - Cross Site Request Forgery","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/woocommerce-pdf-invoices-packing-slips\/woocommerce-pdf-invoices-packing-slips-325-cross-site-request-forgery","description":"The WooCommerce PDF Invoices & Packing Slips plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.2.5. This is due to missing or incorrect nonce validation on the attachment_settings_hint() function. This makes it possible for unauthenticated attackers to change the hide attachments setting hint via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.","date":"2023-01-27"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:R\/S:U\/C:N\/I:L\/A:N","av":"n","ac":"l","pr":"n","ui":"r","s":"u","c":"n","i":"l","a":"n","score":"4.3","severity":"m","exploitable":"2.8","impact":"1.4"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:R\/S:U\/C:N\/I:L\/A:N","score":"4.3","severity":"medium","av":"network","ac":"low","pr":"none","ui":"required","s":"unchanged","c":"none","i":"low","a":"none","exploitable":"2.8","impact":"1.4"},"cwe":[{"cwe":"CWE-352","name":"Cross-Site Request Forgery (CSRF)","description":"The web application does not, or cannot, sufficiently verify whether a request was intentionally provided by the user who sent the request, which could have originated from an unauthorized actor."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"531c89f1533d2ea0e24b637e2032a52fc2045b1ebf4fc9eee8f28a46a39056d5","name":"PDF Invoices &amp; Packing Slips for WooCommerce [woocommerce-pdf-invoices-packing-slips] < 2.15.0","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"2.15.0","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"bc05dde0-98a2-46e3-b2c8-7bdc8c32394b","name":"WooCommerce PDF Invoices &amp; Packing Slips &lt; 2.15.0 - Reflected Cross-Site Scripting","link":"https:\/\/wpscan.com\/vulnerability\/bc05dde0-98a2-46e3-b2c8-7bdc8c32394b","description":"The plugin does not escape some URLs before outputting them in attributes, leading to Reflected Cross-Site Scripting","date":null}],"impact":[]},{"uuid":"e65149dc5806f5cc0904e94bb13de6cf262175de39f8207e1d63d19cca34075b","name":"PDF Invoices &amp; Packing Slips for WooCommerce [woocommerce-pdf-invoices-packing-slips] < 3.7.6","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.7.6","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"a8e582f9125aedd757491a091ef6f45b946db076","name":"PDF Invoices & Packing Slips for WooCommerce <= 3.7.6 - Authenticated (Shop Manager+) SQL Injection","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/woocommerce-pdf-invoices-packing-slips\/pdf-invoices-packing-slips-for-woocommerce-375-authenticated-shop-manager-sql-injection","description":"The PDF Invoices & Packing Slips for WooCommerce plugin for WordPress is vulnerable to SQL Injection via the get_numbers() function in all versions up to, and including, 3.7.6 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query.  This makes it possible for authenticated attackers, with shop manager-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.","date":"2024-01-12"},{"id":"CVE-2024-22147","name":"CVE-2024-22147","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-22147","description":"[en] Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WP Overnight PDF Invoices & Packing Slips for WooCommerce.This issue affects PDF Invoices & Packing Slips for WooCommerce: from n\/a through 3.7.5.","date":"2024-01-26"},{"id":"b32f7f31f5845fe8731b56ebff9d4c9da48be1a9","name":"WordPress  WooCommerce PDF Invoices & Packing Slips Plugin  <= 3.7.5 is vulnerable to SQL Injection","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/woocommerce-pdf-invoices-packing-slips\/vulnerability\/wordpress-pdf-invoices-packing-slips-for-woocommerce-plugin-3-7-5-sql-injection-vulnerability","description":"Update the WordPress WooCommerce PDF Invoices & Packing Slips plugin to the latest available version (at least 3.7.6).\nYudistira Arya discovered and reported this SQL Injection vulnerability in WordPress WooCommerce PDF Invoices & Packing Slips Plugin. This could allow a malicious actor to directly interact with your database, including but not limited to stealing information. This vulnerability has been fixed in version 3.7.6.\nHave additional information or questions about this entry? Get in touch.","date":"2024-01-15"},{"id":"694832d6-8af9-4cc8-8e85-2e2f557a3aed","name":"PDF Invoices &amp; Packing Slips for WooCommerce &lt; 3.7.6 - Shop Manager+ SQL Injection","link":"https:\/\/wpscan.com\/vulnerability\/694832d6-8af9-4cc8-8e85-2e2f557a3aed","description":"The plugin is vulnerable to SQL Injection via the get_numbers() function in all versions up to, and including, 3.7.5 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query.  This makes it possible for authenticated attackers, with shop manager-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:C\/C:H\/I:N\/A:L","av":"n","ac":"l","pr":"h","ui":"n","s":"c","c":"h","i":"n","a":"l","score":"7.6","severity":"h","exploitable":"1.2","impact":"5.9"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:C\/C:H\/I:N\/A:L","score":"7.6","severity":"high","av":"network","ac":"low","pr":"high","ui":"none","s":"changed","c":"high","i":"none","a":"low","exploitable":"1.2","impact":"5.9"},"cwe":[{"cwe":"CWE-89","name":"Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')","description":"The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"2f29ec7bec3f1c5453f5f451b092a64f7857ba79d4768f278a66da81c716be21","name":"PDF Invoices &amp; Packing Slips for WooCommerce [woocommerce-pdf-invoices-packing-slips] < 3.8.1","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.8.1","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-3045","name":"CVE-2024-3045","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-3045","description":"[en] The PDF Invoices & Packing Slips for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several parameters in versions up to, and including, 3.8.0 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2024-05-02"},{"id":"021859e6adde068649a5fe3bcc1b54e406555ea2","name":"PDF Invoices & Packing Slips for WooCommerce <= 3.8.0 - Unauthenticated Stored Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/woocommerce-pdf-invoices-packing-slips\/pdf-invoices-packing-slips-for-woocommerce-380-unauthenticated-stored-cross-site-scripting","description":"The PDF Invoices & Packing Slips for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several parameters in versions up to, and including, 3.8.0 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2024-04-24"},{"id":"aac4c911254e8be618fff095d0e79129639148af","name":"WordPress WooCommerce PDF Invoices & Packing Slips Plugin <= 3.8.0 is vulnerable to Cross Site Scripting (XSS)","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/woocommerce-pdf-invoices-packing-slips\/vulnerability\/wordpress-pdf-invoices-packing-slips-for-woocommerce-plugin-3-8-0-unauthenticated-stored-cross-site-scripting-vulnerability","description":"<p>WordPress WooCommerce PDF Invoices & Packing Slips Plugin <= 3.8.0 is vulnerable to Cross Site Scripting (XSS)<\/p><p>Software: WooCommerce PDF Invoices & Packing Slips<\/p><p>Link: https:\/\/wordpress.org\/plugins\/woocommerce-pdf-invoices-packing-slips\/#developers<\/p><p>Affected Version <= 3.8.0<\/p><p>Fixed in version 3.8.1 <\/p>","date":"2024-04-25"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:R\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"n","ui":"r","s":"c","c":"l","i":"l","a":"n","score":"6.1","severity":"m","exploitable":"2.8","impact":"2.7"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:R\/S:C\/C:L\/I:L\/A:N","score":"6.1","severity":"medium","av":"network","ac":"low","pr":"none","ui":"required","s":"changed","c":"low","i":"low","a":"none","exploitable":"2.8","impact":"2.7"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}],"ssvc":{"exploitation":"none","automatable":"yes","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"1ba91f1fc235f6353c72052ed8ab77fe482253d42485d2bc7f02a49106df7385","name":"PDF Invoices &amp; Packing Slips for WooCommerce [woocommerce-pdf-invoices-packing-slips] < 3.8.1","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.8.1","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-3047","name":"CVE-2024-3047","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-3047","description":"[en] The PDF Invoices & Packing Slips for WooCommerce plugin for WordPress is vulnerable to Server-Side Request Forgery in versions up to, and including, 3.8.0 via the transform() function. This can allow unauthenticated attackers to make web requests to arbitrary locations originating from the web application and can be used to query and modify information from internal services.","date":"2024-05-02"},{"id":"88de2aa79d3709670fb6ebdd1576025d8e3f1b50","name":"PDF Invoices & Packing Slips for WooCommerce <= 3.8.0 - Unauthenticated Server-Side Request Forgery","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/woocommerce-pdf-invoices-packing-slips\/pdf-invoices-packing-slips-for-woocommerce-380-unauthenticated-server-side-request-forgery","description":"The PDF Invoices & Packing Slips for WooCommerce plugin for WordPress is vulnerable to Server-Side Request Forgery in versions up to, and including, 3.8.0 via the transform() function. This can allow unauthenticated attackers to make web requests to arbitrary locations originating from the web application and can be used to query and modify information from internal services.","date":"2024-04-24"},{"id":"c4b0b1cff37adf70084c00cf480e27257818a9ee","name":"WordPress WooCommerce PDF Invoices & Packing Slips Plugin <= 3.8.0 is vulnerable to Server Side Request Forgery (SSRF)","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/woocommerce-pdf-invoices-packing-slips\/vulnerability\/wordpress-pdf-invoices-packing-slips-for-woocommerce-plugin-3-8-0-unauthenticated-server-side-request-forgery-vulnerability","description":"<p>WordPress WooCommerce PDF Invoices & Packing Slips Plugin <= 3.8.0 is vulnerable to Server Side Request Forgery (SSRF)<\/p><p>Software: WooCommerce PDF Invoices & Packing Slips<\/p><p>Link: https:\/\/wordpress.org\/plugins\/woocommerce-pdf-invoices-packing-slips\/#developers<\/p><p>Affected Version <= 3.8.0<\/p><p>Fixed in version 3.8.1 <\/p>","date":"2024-04-25"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:N\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"n","ui":"n","s":"c","c":"l","i":"l","a":"n","score":"7.2","severity":"h","exploitable":"3.9","impact":"2.7"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:N\/S:C\/C:L\/I:L\/A:N","score":"7.2","severity":"high","av":"network","ac":"low","pr":"none","ui":"none","s":"changed","c":"low","i":"low","a":"none","exploitable":"3.9","impact":"2.7"},"cwe":[{"cwe":"CWE-918","name":"Server-Side Request Forgery (SSRF)","description":"The web server receives a URL or similar request from an upstream component and retrieves the contents of this URL, but it does not sufficiently ensure that the request is being sent to the expected destination."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"ffb49fb9e5b14b6742daa1f8bff23363fe22d5beec551ffcbc876477d13d1a79","name":"PDF Invoices &amp; Packing Slips for WooCommerce [woocommerce-pdf-invoices-packing-slips] < 3.8.7","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.8.7","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-50421","name":"CVE-2024-50421","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-50421","description":"[en] Missing Authorization vulnerability in WP Overnight WooCommerce PDF Invoices & Packing Slips woocommerce-pdf-invoices-packing-slips allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WooCommerce PDF Invoices & Packing Slips: from n\/a through <= 3.8.6.","date":"2024-10-29"},{"id":"acd571e0d2e81fd848ac000ff64cc563a3e3bd05","name":"WordPress WooCommerce PDF Invoices & Packing Slips Plugin <= 3.8.6 is vulnerable to Broken Access Control","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/woocommerce-pdf-invoices-packing-slips\/vulnerability\/wordpress-pdf-invoices-packing-slips-for-woocommerce-plugin-3-8-6-broken-access-control-vulnerability","description":"<p>WordPress WooCommerce PDF Invoices & Packing Slips Plugin <= 3.8.6 is vulnerable to Broken Access Control<\/p><p>Software: WooCommerce PDF Invoices & Packing Slips<\/p><p>Link: https:\/\/wordpress.org\/plugins\/woocommerce-pdf-invoices-packing-slips\/#developers<\/p><p>Affected Version <= 3.8.6<\/p><p>Fixed in version 3.8.7 <\/p>","date":"2024-10-24"},{"id":"c8a7970daa685ef99f517760f2eda804e17441ab","name":"WooCommerce PDF Invoices & Packing Slips <= 3.8.6 - Missing Authorization","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/woocommerce-pdf-invoices-packing-slips\/woocommerce-pdf-invoices-packing-slips-386-missing-authorization","description":"The PDF Invoices & Packing Slips for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to, and including, 3.8.6. This makes it possible for unauthenticated attackers to perform an unauthorized action.","date":"2024-10-24"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:N\/S:U\/C:N\/I:L\/A:N","av":"n","ac":"l","pr":"n","ui":"n","s":"u","c":"n","i":"l","a":"n","score":"5.3","severity":"m","exploitable":"0.0","impact":"0.0"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:N\/S:U\/C:N\/I:L\/A:N","score":"5.3","severity":"medium","av":"network","ac":"low","pr":"none","ui":"none","s":"unchanged","c":"none","i":"low","a":"none","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-862","name":"Missing Authorization","description":"The product does not perform an authorization check when an actor attempts to access a resource or perform an action."}],"ssvc":{"exploitation":"none","automatable":"yes","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"476713c9bc870ef63049dc161993de3e9b3e908d819b3ff688c38c1a937fc482","name":"PDF Invoices &amp; Packing Slips for WooCommerce [woocommerce-pdf-invoices-packing-slips] < 5.0.0","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"5.0.0","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2025-67589","name":"CVE-2025-67589","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2025-67589","description":"[en] Missing Authorization vulnerability in WP Overnight WooCommerce PDF Invoices & Packing Slips woocommerce-pdf-invoices-packing-slips allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WooCommerce PDF Invoices & Packing Slips: from n\/a through <= 4.9.1.","date":"2025-12-09"},{"id":"a5b46c8865cb8eff7a98443ad22ab45a0b96f7cc","name":"WooCommerce PDF Invoices & Packing Slips <= 4.9.1 - Missing Authorization","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/woocommerce-pdf-invoices-packing-slips\/woocommerce-pdf-invoices-packing-slips-491-missing-authorization","description":"The PDF Invoices & Packing Slips for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to, and including, 4.9.1. This makes it possible for authenticated attackers, with Contributor-level access and above, to perform an unauthorized action.","date":"2025-12-07"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:N\/I:L\/A:N","av":"n","ac":"l","pr":"l","ui":"n","s":"u","c":"n","i":"l","a":"n","score":"4.3","severity":"m","exploitable":"2.8","impact":"1.4"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:N\/I:L\/A:N","score":"4.3","severity":"medium","av":"network","ac":"low","pr":"low","ui":"none","s":"unchanged","c":"none","i":"low","a":"none","exploitable":"2.8","impact":"1.4"},"cwe":[{"cwe":"CWE-862","name":"Missing Authorization","description":"The product does not perform an authorization check when an actor attempts to access a resource or perform an action."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"db82586bca5282bb2fb4ce1fffe5ec9467e8c30f1cf208c93d03ba21286bddd4","name":"PDF Invoices &amp; Packing Slips for WooCommerce [woocommerce-pdf-invoices-packing-slips] < 5.7.0","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"5.7.0","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2026-1906","name":"PDF Invoices & Packing Slips for WooCommerce <= 5.6.0 - Missing Authorization to Authenticated (Subscriber+) Peppol Identifier Modification","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-1906","description":"The PDF Invoices & Packing Slips for WooCommerce plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 5.6.0 via the `wpo_ips_edi_save_order_customer_peppol_identifiers` AJAX action due to missing capability checks and order ownership validation. This makes it possible for authenticated attackers, with Subscriber-level access and above, to modify Peppol\/EDI endpoint identifiers (`peppol_endpoint_id`, `peppol_endpoint_eas`) for any customer by specifying an arbitrary `order_id` parameter on systems using Peppol invoicing. This can affect order routing on the Peppol network and may result in payment disruptions and data leakage.","date":"0000-00-00"},{"id":"50f1657694eb8d138a142d381617545ad766d1bc","name":"PDF Invoices & Packing Slips for WooCommerce <= 5.6.0 - Missing Authorization to Authenticated (Subscriber+) Peppol Identifier Modification","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/woocommerce-pdf-invoices-packing-slips\/pdf-invoices-packing-slips-for-woocommerce-560-missing-authorization-to-authenticated-subscriber-peppol-identifier-modification","description":"The PDF Invoices & Packing Slips for WooCommerce plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 5.6.0 via the `wpo_ips_edi_save_order_customer_peppol_identifiers` AJAX action due to missing capability checks and order ownership validation. This makes it possible for authenticated attackers, with Subscriber-level access and above, to modify Peppol\/EDI endpoint identifiers (`peppol_endpoint_id`, `peppol_endpoint_eas`) for any customer by specifying an arbitrary `order_id` parameter on systems using Peppol invoicing. This can affect order routing on the Peppol network and may result in payment disruptions and data leakage.","date":"2026-02-17"}],"impact":{"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"7f296dc62464dfbafbd961da330d70a9c18ed5ee572c392cbd26fd2f24367385","name":"PDF Invoices &amp; Packing Slips for WooCommerce [woocommerce-pdf-invoices-packing-slips] < 5.9.0","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"5.9.0","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2026-39472","name":"CVE-2026-39472","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-39472","description":"[en] Shop manager PHP Object Injection in WooCommerce PDF Invoices & Packing Slips < 5.9.0 versions.","date":"2026-06-15"},{"id":"1dde68b9285f7bfc0ab30c3fcc80b55e0d7665aa","name":"PDF Invoices & Packing Slips for WooCommerce < 5.9.0 - Authenticated (Shop manager+) PHP Object Injection","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/woocommerce-pdf-invoices-packing-slips\/pdf-invoices-packing-slips-for-woocommerce-590-authenticated-shop-manager-php-object-injection","description":"The PDF Invoices & Packing Slips for WooCommerce plugin for WordPress is vulnerable to PHP Object Injection in versions up to 5.9.0 via deserialization of untrusted input. This makes it possible for authenticated attackers, with shop manager-level access and above, to inject a PHP Object. No known POP chain is present in the vulnerable software. If a POP chain is present via an additional plugin or theme installed on the target system, it could allow the attacker to delete arbitrary files, retrieve sensitive data, or execute code.","date":"2026-04-20"},{"id":"EUVD-2026-36936","name":"EUVD-2026-36936","link":"https:\/\/euvd.enisa.europa.eu\/enisa\/EUVD-2026-36936","description":"Shop manager PHP Object Injection in WooCommerce PDF Invoices & Packing Slips < 5.9.0 versions.","date":"2026-06-15"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:U\/C:H\/I:H\/A:H","av":"n","ac":"l","pr":"h","ui":"n","s":"u","c":"h","i":"h","a":"h","score":"7.2","severity":"h","exploitable":"0.0","impact":"0.0"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:U\/C:H\/I:H\/A:H","score":"7.2","severity":"high","av":"network","ac":"low","pr":"high","ui":"none","s":"unchanged","c":"high","i":"high","a":"high","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-502","name":"Deserialization of Untrusted Data","description":"The product deserializes untrusted data without sufficiently ensuring that the resulting data will be valid."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"total","kev":false,"kev_date":null}}},{"uuid":"ca9bc9c2ac2f187d1a69b532d7195f71279c9b3b0028a1d27542a883bfe4277a","name":"PDF Invoices &amp; Packing Slips for WooCommerce [woocommerce-pdf-invoices-packing-slips] < 5.15.0","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"5.15.0","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2026-13116","name":"CVE-2026-13116","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-13116","description":"[en] The PDF Invoices & Packing Slips for WooCommerce plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 5.14.0 via the generate_document_shortcode due to missing validation on a user controlled key. This makes it possible for authenticated attackers, with contributor-level access and above, to mint publicly accessible, session-free download links for arbitrary third-party orders, exposing customer names, billing and shipping addresses, email addresses, phone numbers, order and invoice numbers, line items, totals, payment details, and customer notes contained in those orders' invoices and packing slips. Exploitation requires the plugin's Document link access type setting to be configured to 'full'; with the default 'logged_in' value, generated URLs are signed with a per-session nonce rather than the order_key, making the shortcode path unexploitable for unauthorized access to third-party orders.","date":"2026-07-11"},{"id":"55b474cd459d879ec6d1705d7ea9d1c7a0a83d31","name":"PDF Invoices & Packing Slips for WooCommerce <= 5.14.0 - Insecure Direct Object Reference to Authenticated (Contributor+) Sensitive Information Disclosure via 'order_id' Shortcode Attribute","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/woocommerce-pdf-invoices-packing-slips\/pdf-invoices-packing-slips-for-woocommerce-5140-insecure-direct-object-reference-to-authenticated-contributor-sensitive-information-disclosure-via-order-id-shortcode-attribute","description":"The PDF Invoices & Packing Slips for WooCommerce plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 5.14.0 via the generate_document_shortcode due to missing validation on a user controlled key. This makes it possible for authenticated attackers, with contributor-level access and above, to mint publicly accessible, session-free download links for arbitrary third-party orders, exposing customer names, billing and shipping addresses, email addresses, phone numbers, order and invoice numbers, line items, totals, payment details, and customer notes contained in those orders' invoices and packing slips. Exploitation requires the plugin's Document link access type setting to be configured to 'full'; with the default 'logged_in' value, generated URLs are signed with a per-session nonce rather than the order_key, making the shortcode path unexploitable for unauthorized access to third-party orders.","date":"2026-07-10"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:L\/I:N\/A:N","av":"n","ac":"l","pr":"l","ui":"n","s":"u","c":"l","i":"n","a":"n","score":"4.3","severity":"m","exploitable":"0.0","impact":"0.0"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:L\/I:N\/A:N","score":"4.3","severity":"medium","av":"network","ac":"low","pr":"low","ui":"none","s":"unchanged","c":"low","i":"none","a":"none","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-639","name":"Authorization Bypass Through User-Controlled Key","description":"The system's authorization functionality does not prevent one user from gaining access to another user's data or record by modifying the key value identifying the data."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}}]},"updated":"1783750384"}