Skip to content
Noroxi

Booster records

37 published records for vendor booster.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
3
With a fix record
35.1%
Median publish → KEV
No record has entered KEV

All records

37 records
  • Booster for WooCommerce <= 5.4.3 Authentication Bypass

    CriticalCVSS 9.8Proof of conceptEPSS 51%

    booster · booster for woocommerceAug 30, 2021

  • Booster for WooCommerce <= 7.2.4 - Unauthenticated Double Extension Arbitrary File Upload

    CriticalCVSS 9.8No exploitEPSS 1%

    booster · booster for woocommerceAug 29, 2025

  • Booster for WooCommerce 4.0.1 - 7.2.4 - Unauthenticated Arbitrary File Upload

    CriticalCVSS 9.8No exploitEPSS 1%

    booster · booster for woocommerceApr 4, 2025

  • CVE-2024-1986
    35Monitor

    Elite Booster for WooCommerce <= 7.1.7 - Authenticated (Subscriber+) Arbitrary File Upload

    HighCVSS 8.8No exploitEPSS 1%

    booster · booster for woocommerceMar 7, 2024

  • WordPress Booster for WooCommerce plugin <= 7.1.2 - Authenticated Production Creation/Modification Vulnerability

    HighCVSS 8.8No exploitEPSS 0%

    booster · booster for woocommerceJun 4, 2024

  • CVE-2022-4017
    35Monitor

    Booster for WooCommerce - Multiple CSRF

    HighCVSS 8.8No exploitEPSS 0%

    booster · booster elite woocommerceJan 23, 2023

  • CVE-2022-3763
    32Monitor

    Booster for WooCommerce - Checkout Files Deletion via CSRF

    HighCVSS 8.1No exploitEPSS 0%

    booster · booster for woocommerceNov 21, 2022

  • CVE-2024-3957
    29Monitor

    Booster for WooCommerce <= 7.1.8 - Unauthenticated Arbitrary Shortcode Execution

    HighCVSS 7.3No exploitEPSS 1%

    booster · booster for woocommerceMay 2, 2024

  • Booster for WooCommerce 4.0.1 - 7.2.4 - Unauthenticated Stored Cross-Site Scripting

    HighCVSS 7.2No exploitEPSS 0%

    booster · booster for woocommerceApr 4, 2025

  • WordPress Booster for WooCommerce plugin <= 7.2.5 - Cross Site Scripting (XSS) vulnerability

    HighCVSS 7.1No exploitEPSS 0%

    booster · booster for woocommerceNov 6, 2025

  • CVE-2022-3762
    26Monitor

    Booster for WooCommerce - ShopManager+ Arbitrary File Download

    MediumCVSS 6.5No exploitEPSS 1%

    booster · booster for woocommerceNov 21, 2022

  • WordPress Booster for WooCommerce Plugin <= 7.1.1 is vulnerable to Sensitive Data Exposure

    MediumCVSS 6.5No exploitEPSS 1%

    booster · booster for woocommerceNov 22, 2023

  • WordPress Booster for WooCommerce Plugin <= 7.1.1 is vulnerable to Sensitive Data Exposure

    MediumCVSS 6.5No exploitEPSS 1%

    booster · booster for woocommerceNov 30, 2023

  • WordPress Booster Plus for WooCommerce plugin < 7.1.2 - Auth. Sensitive Data Exposure vulnerability

    MediumCVSS 6.5No exploitEPSS 1%

    booster · booster for woocommerceMar 28, 2024

  • WordPress Booster Elite for WooCommerce plugin < 7.1.2 - Auth. Sensitive Data Exposure vulnerability

    MediumCVSS 6.5No exploitEPSS 1%

    booster · booster for woocommerceMar 28, 2024

  • WordPress Booster Elite for WooCommerce plugin < 7.1.3 - Authenticated Production Creation/Modification Vulnerability

    MediumCVSS 6.5No exploitEPSS 0%

    booster · booster for woocommerceJun 4, 2024

  • WordPress Booster Plus for WooCommerce plugin < 7.1.3 - Authenticated Arbitrary WordPress Option Disclosure Vulnerability

    MediumCVSS 6.5No exploitEPSS 0%

    booster · booster for woocommerceJun 9, 2024

  • CVE-2022-4016
    26Monitor

    Booster for WooCommerce - Custom Role Creation/Deletion via CSRF

    MediumCVSS 6.5No exploitEPSS 0%

    booster · booster for woocommerceDec 12, 2022

  • WordPress Booster Plus for WooCommerce plugin < 7.1.2 - Authenticated Arbitrary Post/Page Deletion Vulnerability

    MediumCVSS 6.5No exploitEPSS 0%

    booster · booster for woocommerceJun 9, 2024

  • WordPress Booster for WooCommerce plugin <= 7.3.2 - Cross Site Scripting (XSS) vulnerability

    MediumCVSS 6.5No exploitEPSS 0%

    booster · booster for woocommerceNov 13, 2025

  • The woocommerce-jetpack plugin before 3.8.0 for WordPress has XSS in the Products Per Page feature.

    MediumCVSS 6.1Proof of conceptEPSS 2%

    booster · booster for woocommerceAug 12, 2019

  • Booster for WooCommerce < 5.4.9 - Reflected Cross-Site Scripting in Product XML Feeds Module

    MediumCVSS 6.1No exploitEPSS 1%

    booster · booster for woocommerceJan 3, 2022

  • Booster for WooCommerce < 5.4.9 - Reflected Cross-Site Scripting in General Module

    MediumCVSS 6.1No exploitEPSS 1%

    booster · booster for woocommerceJan 3, 2022

  • Booster for Woocommerce < 5.4.9 - Reflected Cross-Site Scripting in PDF Invoicing Module

    MediumCVSS 6.1No exploitEPSS 1%

    booster · booster for woocommerceJan 3, 2022

  • WordPress Booster for WooCommerce plugin <= 7.1.8 - Reflected Cross Site Scripting (XSS) vulnerability

    MediumCVSS 6.1No exploitEPSS 0%

    booster · booster for woocommerceMar 27, 2024