Home/Product/hasthemes shoplentor
Product

hasthemes shoplentor

19 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-12493
< 3.2.6
The ShopLentor - WooCommerce Builder for Elementor & Gutenberg +21 Modules - All in One Solution (formerly WooLentor) plugin for W
9.8CRITICAL
CVE-2025-11823
< 3.2.5
The ShopLentor - WooCommerce Builder for Elementor & Gutenberg +21 Modules - All in One Solution plugin for WordPress is vulnerabl
6.4MEDIUM
CVE-2025-58990
< 3.2.1
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in DevItems ShopLentor woolento
6.5MEDIUM
CVE-2025-3775
< 3.1.3
The ShopLentor - WooCommerce Builder for Elementor & Gutenberg +20 Modules - All in One Solution (formerly WooLentor) plugin for W
6.5MEDIUM
CVE-2025-1527
< 3.1.1
The ShopLentor - WooCommerce Builder for Elementor & Gutenberg +20 Modules - All in One Solution (formerly WooLentor) plugin for W
6.4MEDIUM
CVE-2024-9538
< 2.9.9
The ShopLentor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.9.8 vi
4.3MEDIUM
CVE-2024-5530
< 2.9.1
The ShopLentor - WooCommerce Builder for Elementor & Gutenberg +12 Modules - All in One Solution (formerly WooLentor) plugin for W
6.4MEDIUM
CVE-2024-34767
< 2.8.8
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in HasThemes ShopLentor
6.5MEDIUM
CVE-2024-4566
< 2.8.9
The ShopLentor plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the aj
7.1HIGH
CVE-2024-3345
< 2.8.9
The ShopLentor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's woolentorsearch shortcode in all
6.4MEDIUM
CVE-2023-6327
< 2.8.8
The ShopLentor (formerly WooLentor) plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability
5.3MEDIUM
CVE-2024-3991
< 2.8.8
The ShopLentor - WooCommerce Builder for Elementor & Gutenberg +12 Modules - All in One Solution (formerly WooLentor) plugin for W
6.4MEDIUM
CVE-2023-7067
< 2.8.2
The ShopLentor - WooCommerce Builder for Elementor & Gutenberg +10 Modules - All in One Solution (formerly WooLentor) plugin for W
4.3MEDIUM
CVE-2024-1057
< 2.8.2
The ShopLentor - WooCommerce Builder for Elementor & Gutenberg +10 Modules - All in One Solution (formerly WooLentor) plugin for W
6.4MEDIUM
CVE-2024-2946
< 2.8.5
The ShopLentor - WooCommerce Builder for Elementor & Gutenberg +12 Modules - All in One Solution (formerly WooLentor) plugin for W
6.4MEDIUM
CVE-2024-1960
< 2.8.2
The ShopLentor - WooCommerce Builder for Elementor & Gutenberg +12 Modules - All in One Solution (formerly WooLentor) plugin for W
6.4MEDIUM
CVE-2024-2868
< 2.8.4
The ShopLentor - WooCommerce Builder for Elementor & Gutenberg +12 Modules - All in One Solution (formerly WooLentor) plugin for W
6.4MEDIUM
CVE-2023-0232
< 2.5.4
The ShopLentor WordPress plugin before 2.5.4 unserializes user input from cookies in order to track viewed products and user data,
9.8CRITICAL
CVE-2023-0231
< 2.5.4
The ShopLentor WordPress plugin before 2.5.4 does not validate and escape some of its block options before outputting them back in
5.4MEDIUM
threatengine.sh