All 3 CVE vulnerabilities found in Order Tip for WooCommerce, with AI-generated Chinese analysis, references, and POCs.
Vendor: railmedia
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-77693 | Order Tip for WooCommerce < 1.6.0 - Shop Manager+ Arbitrary File Deletion via delete_exported_csv_file_ajax | - | - | 2026-08-26 |
| CVE-2025-6025 | Order Tip for WooCommerce <= 1.5.4 - Unauthenticated Tip Manipulation to Negative Value Leading to Unauthorized Discounts CWE-602 | 7.5 | High | 2025-08-15 |
| CVE-2024-1119 | Order Tip for WooCommerce <= 1.3.1 - Missing Authorization to Unauthenticated Data Export CWE-862 | 5.3 | Medium | 2024-03-20 |
All 3 known CVE vulnerabilities affecting Order Tip for WooCommerce with full Chinese analysis, references, and POCs where available.