Pluginbazaar develops WordPress extensions including the order listener for WooCommerce, a plugin focused on e-commerce integration. Its observed vulnerability exposure centers on SQL injection flaws in input handling, a characteristic risk in database-connected plugins deployed across diverse WordPress installations. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Pluginbazaar over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-0948CRITICAL The Order Listener for WooCommerce WordPress plugin before 3.2.2 does not sanitise and escape the id parameter before using it in a SQL statement via a REST route available to unau | May 9, 2022 | 9.8 | 47 | NO | YES |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Pluginbazaar.
Media articles that mention a CVE ID that affects a product developed by Pluginbazaar — matched by CVE ID, not by vendor name.