CyberRota Analysis
AI-GeneratedThe VillaTheme Bopo – WooCommerce Product Bundle Builder is vulnerable to a reflected cross-site scripting (XSS) attack, allowing attackers to inject malicious scripts into web pages. This could lead to unauthorized access to sensitive user data or session hijacking. E-commerce websites using this plugin, particularly those running versions up to 1.2.0, should prioritize remediation to protect their users and maintain security integrity.
Original NVD Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VillaTheme Bopo – WooCommerce Product Bundle Builder bopo-woo-product-bundle-builder allows Reflected XSS.This issue affects Bopo – WooCommerce Product Bundle Builder: from n/a through <= 1.2.0.