Vendor
medium
advisory
Authorization Vulnerability in EDD Product Catalog Feed Plugin for WordPress
1 TTP 1 CVEAn improper authorization vulnerability in the EDD Product Catalog Feed plugin allows authenticated subscribers to delete arbitrary site options, leading to a denial of service.
EDD Product Catalog Feed
wordpress
plugin-vulnerability
denial-of-service
1t
1c
medium
advisory
CVE-2026-7613: Cost of Goods by PixelYourSite WordPress Plugin Stored XSS
2 rules 1 CVEThe Cost of Goods by PixelYourSite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'csvdata[0][cost_of_goods_value]' parameter in versions up to, and including, 1.2.12 due to insufficient input sanitization and output escaping, allowing unauthenticated attackers to inject arbitrary web scripts that execute when a user accesses an injected page.
Cost of Goods by PixelYourSite plugin for WordPress
xss
wordpress
CVE-2026-7613
2r
1c