All 2 CVE vulnerabilities found in Omnishop – Mobile shop apps complementing your WooCommerce webshop, with AI-generated Chinese analysis, references, and POCs.
Vendor: omnishop
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-6214 | Omnishop <= 1.0.9 - Cross-Site Request Forgery to Arbitrary User Deletion via /users/delete REST Endpoint CWE-352 | 6.5 | Medium | 2025-07-23 |
| CVE-2025-6215 | Omnishop <= 1.0.9 - Missing Registration Restriction to Unauthenticated Account Creation via /users/register REST Endpoint CWE-862 | 5.3 | Medium | 2025-07-23 |
All 2 known CVE vulnerabilities affecting Omnishop – Mobile shop apps complementing your WooCommerce webshop with full Chinese analysis, references, and POCs where available.