VYPR

Checkout Field Manager for WooCommerce

by WordPress

CVEs (1)

  • CVE-2025-12500MedFeb 19, 2026
    risk 0.34cvss 5.3epss 0.00

    The Checkout Field Manager (Checkout Manager) for WooCommerce plugin for WordPress is vulnerable to unauthenticated limited file upload in all versions up to, and including, 7.8.1. This is due to the plugin not properly verifying that a user is authorized to perform file upload…