VendorsCozy Visionsms_alert_order_notificationsany version
Vulnerabilities

Cozy Vision SMS Alert Order Notifications any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

10CVEs
CVE-2024-13553
SMS Alert Order Notifications – WooCommerce <= 3.7.9 - Unauthenticated Account Takeover/Privilege Escalation
Published 2025-04-01 · Analyzed
9.8EPSS 0.005
CVE-2025-47682
WordPress SMS Alert Order Notifications – WooCommerce plugin <= 3.8.1 - SQL Injection Vulnerability
Published 2025-05-12 · Modified
9.8EPSS 0.004
CVE-2025-26988
WordPress SMS Alert Order Notifications – WooCommerce plugin <= 3.7.8 - SQL Injection vulnerability
Published 2025-03-03 · Analyzed
9.3EPSS 0.005
CVE-2024-11725
SMS Alert Order Notifications – WooCommerce <= 3.7.6 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Options Update
Published 2025-01-07 · Analyzed
8.8EPSS 0.005
CVE-2025-3876
SMS Alert Order Notifications – WooCommerce <= 3.8.1 - Authenticated (Subscriber+) Privilege Escalation via handleWpLoginCreateUserAction Function
Published 2025-05-10 · Analyzed
8.8EPSS 0.004
CVE-2025-26984
WordPress SMS Alert Order Notifications – WooCommerce plugin <= 3.7.8 - Reflected Cross Site Scripting (XSS) vulnerability
Published 2025-03-03 · Analyzed
7.1EPSS 0.003
CVE-2024-10233
SMSAlert - WooCommerce <= 3.7.5 - Authenticated (Contributor+) Stored Cross-Site Scripting via sa_subscribe Shortcode
Published 2024-10-29 · Analyzed
6.4EPSS 0.003
CVE-2025-3878
SMS Alert Order Notifications – WooCommerce <= 3.8.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via sa_verify Shortcode
Published 2025-05-10 · Analyzed
6.4EPSS 0.003
CVE-2021-24588
SMS Alert Order Notifications – WooCommerce < 3.4.7 Authenticated Cross Site Scripting
Published 2021-09-06 · Modified
6.1EPSS 0.008
CVE-2024-1489
SMS Alert Order Notifications – WooCommerce <= 3.6.9 - Cross-Site Request Forgery
Published 2024-03-13 · Modified
4.3EPSS 0.002