Booster Elite for WooCommerce

Booster Elite for WooCommerce has 8 disclosed vulnerabilities in the WordSec catalog, reported between 2022 and 2024; all 8 are fixed as of September 2026. Their average CVSS score is 6.0, and the most serious one scores 8.8 out of 10. Severity breakdown: 0 critical and 2 high. 2022 was the busiest year with 4 disclosures.

The most common weakness is Cross-Site Request Forgery (CSRF), behind 3 of the records (38%). Other recurring categories include Cross-Site Scripting, Improper Authorization.

Every one of the 8 issues recorded for Booster Elite for WooCommerce has a vendor fix available, so running the current release closes all known holes.

3 independent researchers contributed these findings, most of them (5) reported by WPScanTeam.

Strategic Overview

Avg CVSSMedium
6.0/ 10
Patch Coverage100%
Open

0

Fixed

8

Get automatic notifications for all Booster Elite for WooCommerce vulnerabilities before they are exploited.

Highest severity on recordCVSS 8.8CVE-2024-1986

Elite Booster for WooCommerce <= 7.1.7 - Authenticated (Subscriber+) Arbitrary File Upload

Read the full analysis

Vulnerability Records

8 records
2024-03-07 00:00CVE-2024-1986
8.8
High
Christiaan Swiers (YouGina)Yes
2024-01-05 00:00CVE-2023-52234
4.3
Medium
Dave JongYes
2023-12-27 00:00CVE-2023-51511
4.3
Medium
Dave JongYes
2023-01-02 00:00CVE-2022-4017
5.4
Medium
WPScanTeamYes
2022-12-05 00:00CVE-2022-4227
6.1
Medium
WPScanTeamYes
2022-11-21 00:00CVE-2022-4016
5.4
Medium
WPScanTeamYes
2022-10-31 00:00CVE-2022-3763
8.8
High
WPScanTeamYes
2022-10-31 00:00CVE-2022-3762
4.9
Medium
WPScanTeamYes
Showing 1–8 of 8 reports

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C