THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-15662 (MEDIUM 6.4) — The Advanced Woo Labels – Product Labels & Badges for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'bg_color' parameter in all versions up to, and including, 2.48 due to insufficient input sanitization and output escaping. This makes it po

[NVD] CVE-2026-15662 (MEDIUM 6.4) — The Advanced Woo Labels – Product Labels & Badges for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'bg_color' parameter in all versions up to, and including, 2.48 due to insufficient input sanitization and output escaping. This makes it po

mednvdPublished 2026-08-01

CVE-2026-15662 CVSS: 6.4 MEDIUM Published: 2026-08-01T09:16:59.737

The Advanced Woo Labels – Product Labels & Badges for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'bg_color' parameter in all versions up to, and including, 2.48 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-15662