| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-69386 | WordPress RVCFDI para Woocommerce plugin <= 8.1.8 - Reflected Cross Site Scripting (XSS) vulnerability | realvirtualmx | RVCFDI para Woocommerce | - | - | 2026-02-20 15:46:55 | Deep Dive |
| CVE-2025-62151 | WordPress Virtuaria PagBank / PagSeguro para Woocommerce plugin <= 3.6.3 - Broken Access Control vulnerability | Virtuaria | Virtuaria PagBank / PagSeguro para Woocommerce | Medium | 5.3 | 2025-12-09 14:52:21 | Deep Dive |
| CVE-2025-60189 | WordPress PoloPag – Pix Automático para Woocommerce plugin <= 2.0.9 - Local File Inclusion vulnerability | PoloPag | PoloPag – Pix Automático para Woocommerce | 中危 | - | 2025-11-06 15:54:48 | Deep Dive |
| CVE-2025-10142 | PagBank / PagSeguro Connect para WooCommerce <= 4.44.3 - Authenticated (Shop Manager+) SQL Injection | martins56 | PagBank / PagSeguro Connect para WooCommerce | Medium | 4.9 | 2025-09-10 06:38:52 | Deep Dive |
| CVE-2025-24767 | WordPress TicketBAI Facturas para WooCommerce plugin <= 3.19 - SQL Injection Vulnerability | facturaone | TicketBAI Facturas para WooCommerce | Critical | 9.3 | 2025-06-09 15:56:57 | Deep Dive |
| CVE-2025-24762 | WordPress TicketBAI Facturas para WooCommerce plugin <= 3.45 - Broken Access Control vulnerability | facturaone | TicketBAI Facturas para WooCommerce | Medium | 5.4 | 2025-06-06 12:54:40 | Deep Dive |
| CVE-2025-49009 | Para Inserts Sensitive Information into Log File for Facebook authentication | Erudika | para | Medium | 6.2 | 2025-06-05 16:40:28 | Deep Dive |
| CVE-2025-48955 | Para Server Logs Sensitive Information | Erudika | para | Medium | 6.2 | 2025-06-02 11:11:23 | Deep Dive |
| CVE-2024-6478 | CTT Expresso para WooCommerce < 3.2.13 - Admin+ Stored XSS | Unknown | CTT Expresso para WooCommerce | - | - | 2025-05-15 20:07:07 | Deep Dive |
| CVE-2025-4564 | TicketBAI Facturas para WooCommerce <= 3.18 - Unauthenticated Arbitrary File Deletion | facturaone | TicketBAI Facturas para WooCommerce | Critical | 9.8 | 2025-05-15 11:13:15 | Deep Dive |
| CVE-2025-30906 | WordPress Plugin Oficial – Getnet para WooCommerce plugin <= 1.7.3 - Reflected Cross Site Scripting (XSS) vulnerability | lisandragetnet | Plugin Oficial – Getnet para WooCommerce | High | 7.1 | 2025-04-01 20:58:08 | Deep Dive |
| CVE-2023-25026 | WordPress PayPal Brasil para WooCommerce plugin <= 1.4.2 - Broken Access Control vulnerability | Otávio Augusto | PayPal Brasil para WooCommerce | Medium | 4.3 | 2024-12-09 11:31:39 | Deep Dive |
| CVE-2023-47847 | WordPress PayTR Taksit Tablosu plugin <= 1.3.1 - Broken Access Control vulnerability | PayTR Ödeme ve Elektronik Para Kuruluşu A.Ş. | PayTR Taksit Tablosu | Medium | 5.3 | 2024-12-09 11:30:36 | Deep Dive |
| CVE-2024-51571 | WordPress MasterBip para Elementor plugin <= 1.6.3 - Cross Site Scripting (XSS) vulnerability | masterbip | MasterBip para Elementor | Medium | 6.5 | 2024-11-11 05:50:21 | Deep Dive |
| CVE-2024-6687 | CTT Expresso para WooCommerce <= 3.2.12 - Information Exposure via Unprotected Directory | limpinho | CTT Expresso para WooCommerce | Medium | 5.3 | 2024-08-01 01:59:32 | Deep Dive |
| CVE-2023-48781 | WordPress MkRapel Regiones y Ciudades de Chile para WC Plugin <= 4.3.0 is vulnerable to Cross Site Request Forgery (CSRF) | Marketing Rapel | MkRapel Regiones y Ciudades de Chile para WC | Medium | 4.3 | 2023-12-18 22:05:44 | Deep Dive |
| CVE-2023-49853 | WordPress PayTR Taksit Tablosu Plugin <= 1.3.1 is vulnerable to Cross Site Request Forgery (CSRF) | PayTR Ödeme ve Elektronik Para Kuruluşu A.Ş. | PayTR Taksit Tablosu – WooCommerce | Medium | 5.4 | 2023-12-18 14:33:57 | Deep Dive |
| CVE-2023-32296 | WordPress Kangu para WooCommerce Plugin <= 2.2.9 is vulnerable to Cross Site Scripting (XSS) | Kangu | Kangu para WooCommerce | High | 7.1 | 2023-09-04 11:12:07 | Deep Dive |
| CVE-2023-3525 | WordPress Plugin Getnet Argentina para Woocommerce 安全漏洞 | wanderlustcodes | Getnet Argentina para Woocommerce | High | 7.5 | 2023-07-12 04:38:44 | Deep Dive |
| CVE-2022-47589 | WordPress CTT Expresso para WooCommerce Plugin <= 3.2.11 is vulnerable to Cross Site Scripting (XSS) | this.functional | CTT Expresso para WooCommerce | Medium | 5.9 | 2023-03-23 14:48:01 | Deep Dive |