Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-17421 | The Thank You Page Customizer for WooCommerce – Increase Your Sales plugin for WordPress is vulnerable to unauthorized execution of shortcodes due to a missing capability check on the get_text_editor_content() function in all versions up to, and including, 1.1.2. This makes it possible for authenticated attackers, with subscriber-level access and above, to execute arbitrary shortcodes. |
Wed, 08 Apr 2026 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Thank You Page Customizer for WooCommerce – Increase Your Sales <= 1.1.2 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Shortcode Execution |
Wed, 15 Jan 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Villatheme
Villatheme woocommerce Thank You Page Customizer |
|
| Weaknesses | CWE-862 | |
| CPEs | cpe:2.3:a:villatheme:woocommerce_thank_you_page_customizer:*:*:*:*:free:wordpress:*:* | |
| Vendors & Products |
Villatheme
Villatheme woocommerce Thank You Page Customizer |
Status: PUBLISHED
Assigner: Wordfence
Published:
Updated: 2026-04-08T16:44:59.728Z
Reserved: 2024-02-20T20:22:51.754Z
Link: CVE-2024-1687
Updated: 2024-08-01T18:48:21.921Z
Status : Modified
Published: 2024-02-27T06:15:45.957
Modified: 2026-04-08T17:18:23.110
Link: CVE-2024-1687
No data.
OpenCVE Enrichment
No data.
EUVD