Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WebToffee WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels print-invoices-packing-slip-labels-for-woocommerce allows Stored XSS.This issue affects WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels: from n/a through <= 4.7.1.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2025-01-24 18:15
Updated : 2026-06-17 08:59
NVD link : CVE-2025-24644
Mitre link : CVE-2025-24644
CVE.ORG link : CVE-2025-24644
JSON object : View
Products Affected
webtoffee
- woocommerce_pdf_invoices\,_packing_slips\,_delivery_notes_and_shipping_labels
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
