- How many CVEs does webtoffee have?
- webtoffee has 63 published CVE records since 2018, including 31 in the last two years.
- How many webtoffee CVEs are in CISA KEV?
- None of webtoffee's CVEs are currently listed in CISA's Known Exploited Vulnerabilities catalog.
- Which webtoffee products have the most CVEs?
- The webtoffee products with the most published CVEs are Import Export WordPress Users, WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels, Product Import Export for WooCommerce, Order Export & Order Import for WooCommerce, Export and Import Users and Customers.
- What are the most common weakness types in webtoffee CVEs?
- webtoffee's CVEs most often map to these CWE weakness types: CWE-862 (Missing Authorization), CWE-79 (Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')), CWE-502 (Deserialization of Untrusted Data), CWE-22 (Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')).
- Are there public exploits for webtoffee vulnerabilities?
- Yes — 8 of webtoffee's CVEs have a known public exploit.
- How many critical webtoffee vulnerabilities are there?
- webtoffee has 5 critical and 21 high-severity CVEs.
- What is the average severity of webtoffee CVEs?
- The average CVSS base score across webtoffee's scored CVEs is 6.4.