GHSA-wmqp-jwjr-9frxHighCVSS 7.1
Unauthenticated Cross Site Scripting (XSS) in Upsell Order Bump Offer for WooCommerce <= 3.1.5...
🔗 CVE IDs covered (1)
📋 Description
Unauthenticated Cross Site Scripting (XSS) in Upsell Order Bump Offer for WooCommerce <= 3.1.5 versions.
🔗 References (3)
- https://nvd.nist.gov/vuln/detail/CVE-2026-81288
- https://patchstack.com/database/wordpress/plugin/upsell-order-bump-offer-for-woocommerce/vulnerability/wordpress-upsell-order-bump-offer-for-woocommerce-plugin-3-1-5-cross-site-scripting-xss-vulnerability?_s_id=cve
- https://github.com/advisories/GHSA-wmqp-jwjr-9frx