21 Feb 2019

Vulnerability Details: Persistent Cross-Site Scripting (XSS) in Abandoned Cart Lite for WooCommerce

One of the changelog entries for version 5.2.0 of Abandoned Cart Lite for WooCommerce is “Added sanitization checks for checkout field capture for guest users.” Looking at the changes made in that version we found they accurately described a change that fixed a persistent cross-site scripting (XSS) vulnerability.


[Read more]