← WordPress Vulnerabilities
WordPress security by component

Wholesale Market for WooCommerce

Wholesale Market for WooCommerce is a WordPress component with 3 published CVE records in this archive. The latest tracked vulnerability was published Jan 02, 2023; the highest CVE/CNA score is 7.5.

Plugin slug: wholesale-market-for-woocommerce

CVE-2022-4109: Wholesale Market for WooCommerce: Filesystem traversal

Wholesale Market for WooCommerce is affected by filesystem traversal. Exposure depends on how the affected operation is made reachable by the site. A crafted path can escape the intended directory and reach files or directories elsewhere on the server.

PublishedJan 02, 2023
Safe version guidanceSee mitigation notes
Safe version
Jan 02, 2023 CVE-2022-4109
Wholesale Market for WooCommerce: Filesystem traversal
Wholesale Market for WooCommerce is affected by filesystem traversal. Exposure depends on how the affected operation is made reachable by the site. A crafted path can escape the intended directory and reach files or directories elsewhere on the server.
See mitigation notes
CVE2.7
NVD2.7
Dec 19, 2022 CVE-2022-4108
Wholesale Market for WooCommerce: A security weakness
Wholesale Market for WooCommerce is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE4.9
NVD4.9
Dec 19, 2022 CVE-2022-4106
Wholesale Market for WooCommerce: A security weakness
Wholesale Market for WooCommerce is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE7.5
NVD7.5