VYPR

Export All Data

by WordPress

CVEs (1)

  • CVE-2025-13606MedDec 2, 2025
    risk 0.35cvss 6.5epss 0.00

    The Export All Posts, Products, Orders, Refunds & Users plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.19. This is due to missing or incorrect nonce validation on the `parseData` function. This makes it possible for…