Oliverpos develops point-of-sale software, with observed vulnerabilities concentrating in its Oliver POS product around access-control and session-management issues such as missing authorization checks and cross-site request forgery. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Oliverpos over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-13513CRITICAL The Oliver POS – A WooCommerce Point of Sale (POS) plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.4.2.3 via the loggin | Feb 15, 2025 | 9.8 | 28 | NO | NO |
CVE-2024-0702HIGH The Oliver POS – A WooCommerce Point of Sale (POS) plugin for WordPress is vulnerable to unauthorized access due to missing capability checks on several functions hooked via AJAX i | Feb 29, 2024 | 7.3 | 21 | NO | NO |
CVE-2024-1954MEDIUM The Oliver POS – A WooCommerce Point of Sale (POS) plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.4.1.8. This is due to mi | Feb 28, 2024 | 6.3 | 19 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Oliverpos.
Media articles that mention a CVE ID that affects a product developed by Oliverpos — matched by CVE ID, not by vendor name.