Software intelligence
Important: Woolentor Addons appearing in this catalog does not mean your website is affected. Exposure depends on your installed version. How SiteRespond intelligence works
Tracked advisories
29
Latest advisory
4 August 2026
CISA KEV matches
0
In this WordPress feed
WordPress slug
woolentor-addons
Plugin
This catalog lists 29 known advisories affecting Woolentor Addons. The most recent was published on 4 August 2026. If you use this software, compare your installed version against the affected ranges on each advisory and update to a fixed release outside those ranges. SiteRespond Defence checks your actual installed version when the plugin is connected — listing here does not by itself mean your site is vulnerable.
ShopLentor <= 3.3.7 - Authenticated (Administrator+) Arbitrary Function Execution via 'callback' Parameter via REST API
This advisory describes a other issue in the affected software. Review the source advisory and your installed version to assess exposure.
Published 4 August 2026
ShopLentor <= 3.4.5 - Insecure Direct Object Reference to Authenticated (Contributor+) Sensitive Information Exposure via 'optionSection' Parameter
This advisory describes a other issue in the affected software. Review the source advisory and your installed version to assess exposure.
Published 27 July 2026
ShopLentor <= 3.4.5 - Authenticated (Administrator+) SQL Injection via 'orderby' Parameter
May allow attackers to read or modify database contents beyond intended access.
Published 27 July 2026
Known Woolentor Addons advisories published by month.
CVE-2026-6020 · Published 4 August 2026
Affected versions: ≤ 3.3.7
CVE-2026-16797 · Published 27 July 2026
Affected versions: ≤ 3.4.5
CVE-2026-16811 · Published 27 July 2026
Affected versions: ≤ 3.4.5
CVE-2026-6287 · Published 26 May 2026
Affected versions: ≤ 3.3.8
CVE-2026-4059 · Published 13 April 2026
Affected versions: ≤ 3.3.5
CVE-2026-1714 · Published 17 February 2026
Affected versions: ≤ 3.3.2
CVE-2025-12493 · Published 3 November 2025
Affected versions: ≤ 3.2.5
CVE-2025-11823 · Published 24 October 2025
Affected versions: ≤ 3.2.4
CVE-2025-58990 · Published 9 September 2025
Affected versions: ≤ 3.2.0
CVE-2025-3775 · Published 24 April 2025
Affected versions: ≤ 3.1.2
CVE-2025-1527 · Published 11 March 2025
Affected versions: ≤ 3.1.0
CVE-2024-9538 · Published 10 October 2024
Affected versions: ≤ 2.9.8
CVE-2024-8668 · Published 24 September 2024
Affected versions: ≤ 2.9.7
CVE-2024-5530 · Published 10 June 2024
Affected versions: ≤ 2.9.0
CVE-2024-4566 · Published 20 May 2024
Affected versions: ≤ 2.8.8
SiteRespond Defence matches your installed Woolentor Addons version against this catalog when the Defence plugin is connected to your WordPress site.