CVE-2024-38669: a3rev Software Woocommerce Predictive Search

High severity, CVSS 7.1. EPSS: 0.4% chance of exploitation in the next 30 days.

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in a3rev Software WooCommerce Predictive Search allows Reflected XSS.This issue affects WooCommerce Predictive Search: from n/a through 6.0.1.

Affected products

  • a3rev Software Woocommerce Predictive Search: up to and including 6.0.1

Published 2024-07-20. Last modified 2026-06-17.