Webtoffee

    Dashboard / Vendors

    Products: 15
    Vulnerabilities: 51
    Known Exploited: 0
    3
    Critical Level Threats
    19
    High Level Threats
    25
    Medium Level Threats
    4
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Items Per Page

    Vulnerabilities

    CVE-2026-18027

    WebToffee WooCommerce PDF Invoices, Packing Slips, Delivery Notes & Shipping Labels <= 4.9.8 - Authenticated (Subscriber+) Arbitrary File Read via 'customer_note' Parameter

    Last Modified: Aug 24, 2026
    Published: Aug 22, 2026

    CVE-2026-13389

    WebToffee Cookie Consent < 3.5.3 - Consent Log Disclosure/Deletion, Page Creation & License Deactivation via Unprotected REST Routes

    Last Modified: Aug 04, 2026
    Published: Aug 02, 2026

    CVE-2026-49056

    WordPress WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels plugin <= 4.9.4 - Sensitive Data Exposure vulnerability

    Last Modified: Jun 16, 2026
    Published: Jun 15, 2026

    CVE-2026-48971

    WordPress Product Import Export for WooCommerce plugin <= 2.5.6 - Broken Access Control vulnerability

    Last Modified: May 28, 2026
    Published: May 27, 2026

    CVE-2026-45438

    WordPress Smart Coupons for WooCommerce plugin < 2.3.0 - Broken Access Control vulnerability

    Last Modified: May 26, 2026
    Published: May 25, 2026
    Items Per Page