The WooCommerce WordPress plugin before 6.6.0 is vulnerable to stored HTML injection due to lack of escaping and sanitizing in the payment gateway titles
| Software | From | Fixed in |
|---|---|---|
| woocommerce / woocommerce | - | 6.6.0 |
woocommerce / woocommerce
|
- | 6.6.0 |