All 3 CVE vulnerabilities found in WooCommerce Ultimate Gift Card, with AI-generated Chinese analysis, references, and POCs.
Vendor: WPSwings
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-47569 | WordPress WooCommerce Ultimate Gift Card plugin <= 2.9.6 - SQL Injection vulnerability CWE-89 | 9.3 | Critical | 2025-09-09 |
| CVE-2024-8425 | WooCommerce Ultimate Gift Card <= 2.9.2 - Unauthenticated Arbitrary File Upload CWE-434 | 9.8 | Critical | 2025-02-28 |
| CVE-2024-53740 | WordPress WooCommerce Ultimate Gift Card plugin < 2.9.1 - Reflected Cross Site Scripting (XSS) vulnerability CWE-79 | 7.1 | High | 2024-12-02 |
All 3 known CVE vulnerabilities affecting WooCommerce Ultimate Gift Card with full Chinese analysis, references, and POCs where available.