← WordPress Vulnerabilities
WordPress security by component

One Click Order Re-Order

One Click Order Re-Order is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Jul 04, 2024; the highest CVE/CNA score is 6.4.

Plugin slug: one-click-order-reorder

CVE-2024-5641: One Click Order Re-Order: Cross-site scripting

One Click Order Re-Order is affected by cross-site scripting. Exploitation requires at least subscriber-level access. Injected script can execute in the affected site's origin when the vulnerable output is viewed.

PublishedJul 04, 2024
Safe version guidanceSee mitigation notes
Safe version
Jul 04, 2024 CVE-2024-5641
One Click Order Re-Order: Cross-site scripting
One Click Order Re-Order is affected by cross-site scripting. Exploitation requires at least subscriber-level access. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
See mitigation notes
CVE6.4
NVD5.4