← WordPress Vulnerabilities
WordPress security by component

Gift Cards (Gift Vouchers and Packages) (WooCommerce Supported)

Gift Cards (Gift Vouchers and Packages) (WooCommerce Supported) is a WordPress component with 3 published CVE records in this archive. The latest tracked vulnerability was published Feb 20, 2025; the highest CVE/CNA score is 9.8.

Plugin slug: gift-vouchers

CVE-2024-13520: Gift Cards (Gift Vouchers and Packages) (WooCommerce Supported): A security weakness

Gift Cards (Gift Vouchers and Packages) (WooCommerce Supported) is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation.

PublishedFeb 20, 2025
Safe version guidanceSee mitigation notes
Safe version
Feb 20, 2025 CVE-2024-13520
Gift Cards (Gift Vouchers and Packages) (WooCommerce Supported): A security weakness
Gift Cards (Gift Vouchers and Packages) (WooCommerce Supported) is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE5.3
NVDPending
Mar 22, 2023 CVE-2023-28662
Gift Cards (Gift Vouchers and Packages): SQL injection
Gift Cards (Gift Vouchers and Packages) is affected by SQL injection. The vulnerable path is reachable without authentication. A successful request can alter database queries and expose or modify WordPress data.
See mitigation notes
CVE9.8
NVD9.8
Aug 30, 2018 CVE-2018-16159
Gift Vouchers: SQL injection
Gift Vouchers is affected by SQL injection. Exposure depends on how the affected operation is made reachable by the site. A successful request can alter database queries and expose or modify WordPress data.
See mitigation notes
CVE9.8
NVD9.8