Wpmarketingrobot's vulnerability profile concentrates in the WooCommerce Google Feed Manager plugin, a WordPress extension focused on product feed generation and e-commerce integration. The observed weakness classes—cross-site scripting, SQL injection, and missing authorization—reflect the web-facing input-handling and database-access patterns endemic to WordPress plugins that bridge user content with external integrations. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Wpmarketingrobot over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-7258HIGH The WooCommerce Google Feed Manager plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the 'wppfm_removeFeedFile' function in all | Aug 23, 2024 | 8.8 | 27 | NO | NO |
CVE-2024-3067HIGH The WooCommerce Google Feed Manager plugin for WordPress is vulnerable to SQL Injection via the 'id' parameter in all versions up to, and including, 2.4.2 due to insufficient escap | Apr 16, 2024 | 7.2 | 22 | NO | NO |
CVE-2024-29112MEDIUM Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Marketing Robot WooCommerce Google Feed Manager allows Stored XSS.This issu | Mar 19, 2024 | 4.8 | 16 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Wpmarketingrobot.
Media articles that mention a CVE ID that affects a product developed by Wpmarketingrobot — matched by CVE ID, not by vendor name.