vciy

The Easy Digital Downloads (EDD): 22 records in one advisory

22 records announced together, published 2019-10-23, every one of them citing the same advisory.

The advisory

Every record in this batch cites https://web.archive.org/web/20160921003517/https://easydigitaldownloads.com/blog/security-fix-re…. That is the CNA's own reference, held in the index, and it is why these records are on one page.

What the records offer

No record in this batch publishes a fixed version in held sources.

No record in this batch is listed by CISA in held sources.

Every record names something of its own, listed against it below.

What this page does not cover

This batch is 22 of the 32 records that cite the same advisory. The other 10 are different findings announced alongside it.

None of those 10 is grouped with any other. Each one has its own record page and nothing else.

The batch is what one advisory announced. It is not every record sharing this weakness, this product or this mechanism, and nothing here is scoped to any estate.

Listed for shared announcement, not shared vulnerability. Each record here is its own finding with its own page, and fixing one does not address another.

CVE-2015-9506amazon s3
CVE-2015-9507attach accounts to orders
CVE-2015-9508commissions
CVE-2015-9509content restriction
CVE-2015-9510cross-sell upsell
CVE-2015-9511conditional success redirects
CVE-2015-9512csv manager
CVE-2015-9513favorites
CVE-2015-9515htaccess editor
CVE-2015-9517manual purchases
CVE-2015-9520per product emails
CVE-2015-9521pushover notifications
CVE-2015-9523recommended products
CVE-2015-9524recount earnings
CVE-2015-9525recurring payments
CVE-2015-9527simple shipping
CVE-2015-9528software licensing
CVE-2015-9530upload file
CVE-2015-9531wish lists

22 records, read from the index as it stood on 2026-09-20. Every row opens the record it names, and every value on that record opens its own receipt.

Everything on this page is free. Public data. Withholding it protects nothing.