Vulnerability Details CVE-2023-28988
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in PI Websolution Direct checkout, Add to cart redirect, Quick purchase button, Buy now button, Quick View button for WooCommerce plugin <= 2.1.48 versions.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 17.9%
CVSS Severity
CVSS v3 Score 5.9
Products affected by CVE-2023-28988
-
cpe:2.3:a:piwebsolution:add-to-cart-direct-checkout-for-woocommerce:-
-
cpe:2.3:a:piwebsolution:add-to-cart-direct-checkout-for-woocommerce:2.1.44
-
cpe:2.3:a:piwebsolution:add-to-cart-direct-checkout-for-woocommerce:2.1.48