CVE-2025-5813
26.06.2025, 03:15
The Amazon Products to WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the wcta2w_get_amazon_product_callback() function in all versions up to, and including, 1.2.7. This makes it possible for unauthenticated attackers to create new produces.Enginsight
Vendor | Product | Version |
---|---|---|
suhailahmad64 | amazon_products_to_woocommerce | 𝑥 ≤ 1.2.7 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration