CVE

Id
87614  
CVE No.
CVE-2016-10112  
Status
Candidate  
Description
Cross-site scripting (XSS) vulnerability in the WooCommerce plugin before 2.6.9 for WordPress allows remote authenticated administrators to inject arbitrary web script or HTML by providing crafted tax-rate table values in CSV format.  
Phase
Assigned (20170103)  
Votes
None (candidate not yet proposed)  
Comments