| CVE-2025-30837 | WordPress WooCommerce Fattureincloud plugin <= 2.6.7 - Cross Site Scripting (XSS) vulnerability | Cristiano Zanca | WooCommerce Fattureincloud | High | 7.1 | 2025-04-01 05:31:38 | Deep Dive |
| CVE-2025-30579 | WordPress Pesapal Gateway for Woocommerce plugin <= 2.1.0 - Reflected Cross Site Scripting (XSS) vulnerability | Jakeii | Pesapal Gateway for Woocommerce | High | 7.1 | 2025-04-01 05:31:35 | Deep Dive |
| CVE-2025-31598 | WordPress Quantity Dynamic Pricing & Bulk Discounts for WooCommerce plugin <= 4.0.3 - Stored Cross Site Scripting (XSS) vulnerability | WPFactory | Quantity Dynamic Pricing & Bulk Discounts for WooCommerce | Medium | 6.5 | 2025-03-31 12:55:33 | Deep Dive |
| CVE-2025-31406 | WordPress ELEX WooCommerce Request a Quote plugin <= 2.3.9 - Broken Access Control vulnerability | ELEXtensions | ELEX WooCommerce Request a Quote | Medium | 4.3 | 2025-03-31 08:34:52 | Deep Dive |
| CVE-2025-30835 | WordPress Accounting for WooCommerce plugin <= 1.6.8 - Local File Inclusion vulnerability | Bastien Ho | Accounting for WooCommerce | High | 7.5 | 2025-03-31 06:07:10 | Deep Dive |
| CVE-2025-2266 | Checkout Mestres do WP for WooCommerce 8.6.5 - 8.7.5 - Unauthenticated Arbitrary Options Update | mestresdowp | Checkout Mestres do WP for WooCommerce | Critical | 9.8 | 2025-03-29 07:03:31 | Deep Dive |
| CVE-2025-22767 | WordPress GlobalPayments WooCommerce Plugin <= 1.13.2 - Reflected Cross Site Scripting (XSS) vulnerability | Global Payments | GlobalPayments WooCommerce | High | 7.1 | 2025-03-28 15:12:26 | Deep Dive |
| CVE-2024-51624 | WordPress Já-Já Pagamentos for WooCommerce plugin <= 1.3.0 - Reflected Cross Site Scripting (XSS) vulnerability | jajapagamentos | Já-Já Pagamentos for WooCommerce | High | 7.1 | 2025-03-28 15:12:25 | Deep Dive |
| CVE-2025-27001 | WordPress Shipmondo – A complete shipping solution for WooCommerce plugin <= 5.0.3 - Authenticated Arbitrary WordPress Option Disclosure vulnerability | Shipmondo | Shipmondo – A complete shipping solution for WooCommerce | Medium | 6.5 | 2025-03-28 09:38:46 | Deep Dive |
| CVE-2025-26762 | WordPress WooCommerce plugin <= 9.7.0 - Cross Site Scripting (XSS) vulnerability | Automattic | WooCommerce | Medium | 5.9 | 2025-03-27 15:52:23 | Deep Dive |
| CVE-2025-22638 | WordPress Product Table For WooCommerce Plugin <= 1.2.3 - Cross Site Scripting (XSS) vulnerability | acowebs | Product Table For WooCommerce | Medium | 6.5 | 2025-03-27 15:13:20 | Deep Dive |
| CVE-2025-22644 | WordPress Vayu Blocks – Gutenberg Blocks plugin <= 1.4.7 - Cross Site Scripting (XSS) vulnerability | ThemeHunk | Vayu Blocks – Gutenberg Blocks for WordPress & WooCommerce | Medium | 6.5 | 2025-03-27 15:11:03 | Deep Dive |
| CVE-2025-22667 | WordPress Export Order, Product, Customer & Coupon for WooCommerce to Google Sheets plugin <= 1.8.2 - Broken Access Control vulnerability | Creative Werk Designs | Export Order, Product, Customer & Coupon for WooCommerce to Google Sheets | Medium | 4.3 | 2025-03-27 14:24:01 | Deep Dive |
| CVE-2025-22673 | WordPress EAN Barcode Generator <= 5.3.5 - Broken Access Control vulnerability | WPFactory | EAN for WooCommerce | Medium | 4.3 | 2025-03-27 14:12:44 | Deep Dive |
| CVE-2025-30923 | WordPress Gift Message for WooCommerce plugin <= 1.7.8 - Cross Site Request Forgery (CSRF) vulnerability | powerfulwp | Gift Message for WooCommerce | Medium | 4.3 | 2025-03-27 10:55:59 | Deep Dive |
| CVE-2025-30888 | WordPress Custom Fields Account Registration For Woocommerce Plugin <= 1.1 - Cross Site Request Forgery (CSRF) vulnerability | silverplugins217 | Custom Fields Account Registration For Woocommerce | Medium | 4.3 | 2025-03-27 10:55:44 | Deep Dive |
| CVE-2025-30879 | WordPress MC Woocommerce Wishlist plugin <= 1.8.9 - SQL Injection vulnerability | Moreconvert Team | MC Woocommerce Wishlist | High | 7.6 | 2025-03-27 10:55:40 | Deep Dive |
| CVE-2025-30872 | WordPress Product Author for WooCommerce plugin <= 1.0.7 - Cross Site Request Forgery (CSRF) vulnerability | Nitin Prakash | Product Author for WooCommerce | Medium | 4.3 | 2025-03-27 10:55:37 | Deep Dive |
| CVE-2025-30857 | WordPress Currency Switcher for WooCommerce plugin <= 0.0.7 - CSRF to Stored XSS vulnerability | PressMaximum | Currency Switcher for WooCommerce | High | 7.1 | 2025-03-27 10:55:30 | Deep Dive |
| CVE-2025-30854 | WordPress Serial Codes Generator and Validator with WooCommerce Support plugin <= 2.7.7 - Cross Site Request Forgery (CSRF) vulnerability | Vollstart | Serial Codes Generator and Validator with WooCommerce Support | Medium | 4.3 | 2025-03-27 10:55:28 | Deep Dive |