Software intelligence
Important: Woolentor Addons appearing in this catalog does not mean your website is affected. Exposure depends on your installed version. How SiteRespond intelligence works
Tracked advisories
29
Latest advisory
4 August 2026
CISA KEV matches
0
In this WordPress feed
WordPress slug
woolentor-addons
Plugin
This catalog lists 29 known advisories affecting Woolentor Addons. The most recent was published on 4 August 2026. If you use this software, compare your installed version against the affected ranges on each advisory and update to a fixed release outside those ranges. SiteRespond Defence checks your actual installed version when the plugin is connected — listing here does not by itself mean your site is vulnerable.
ShopLentor <= 3.3.7 - Authenticated (Administrator+) Arbitrary Function Execution via 'callback' Parameter via REST API
This advisory describes a other issue in the affected software. Review the source advisory and your installed version to assess exposure.
Published 4 August 2026
ShopLentor <= 3.4.5 - Insecure Direct Object Reference to Authenticated (Contributor+) Sensitive Information Exposure via 'optionSection' Parameter
This advisory describes a other issue in the affected software. Review the source advisory and your installed version to assess exposure.
Published 27 July 2026
ShopLentor <= 3.4.5 - Authenticated (Administrator+) SQL Injection via 'orderby' Parameter
May allow attackers to read or modify database contents beyond intended access.
Published 27 July 2026
Known Woolentor Addons advisories published by month.
CVE-2024-3345 · Published 20 May 2024
Affected versions: ≤ 2.8.8
CVE-2024-34767 · Published 17 May 2024
Affected versions: ≤ 2.8.7
CVE-2023-6327 · Published 3 May 2024
Affected versions: ≤ 2.8.7
CVE-2024-3991 · Published 2 May 2024
Affected versions: ≤ 2.8.7
CVE-2024-1057 · Published 19 April 2024
Affected versions: ≤ 2.8.1
CVE-2023-7067 · Published 18 April 2024
Affected versions: ≤ 2.8.1
CVE-2024-2946 · Published 4 April 2024
Affected versions: ≤ 2.8.4
CVE-2024-2868 · Published 3 April 2024
Affected versions: ≤ 2.8.3
CVE-2024-1960 · Published 14 March 2024
Affected versions: ≤ 2.8.1
CVE-2022-47172 · Published 5 July 2023
Affected versions: ≤ 2.6.2
CVE-2022-46798 · Published 6 February 2023
Affected versions: ≤ 2.5.1
CVE-2023-0231 · Published 28 January 2023
Affected versions: ≤ 2.5.3
CVE-2023-0232 · Published 28 January 2023
Affected versions: ≤ 2.5.3
CVE-2021-24262 · Published 13 April 2021
Affected versions: < 1.8.6
SiteRespond Defence matches your installed Woolentor Addons version against this catalog when the Defence plugin is connected to your WordPress site.