Product
The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting due to insufficient input sanitization of the Comment Author Name, allowing unauthenticated attackers to execute arbitrary scripts.