Vulnerability Description
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in RexTheme Cart Lift – Abandoned Cart Recovery for WooCommerce and EDD plugin <= 3.1.5 versions.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Rextheme | Cart Lift - Abandoned Cart Recovery For Woocommerce And Edd | <= 3.1.5 |
Related Weaknesses (CWE)
References
- https://patchstack.com/database/vulnerability/cart-lift/wordpress-cart-lift-abanThird Party Advisory
- https://patchstack.com/database/vulnerability/cart-lift/wordpress-cart-lift-abanThird Party Advisory
FAQ
What is CVE-2022-47449?
CVE-2022-47449 is a vulnerability with a CVSS score of 7.1 (HIGH). Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in RexTheme Cart Lift – Abandoned Cart Recovery for WooCommerce and EDD plugin <= 3.1.5 versions.
How severe is CVE-2022-47449?
CVE-2022-47449 has been rated HIGH with a CVSS base score of 7.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-47449?
Check the references section above for vendor advisories and patch information. Affected products include: Rextheme Cart Lift - Abandoned Cart Recovery For Woocommerce And Edd.