cleantalk
Vulnerabilities and Security Researches

Vulnerabilities and security researches forpure-wc-variations-swatches pure-wc-variations-swatches

Direction: ascending
Jan 11, 2026

Pure WC Variation Swatches # CVE-2025-12820

CVE, Research URL

CVE-2025-12820

Date
Dec 20, 2025
Research Description
The Pure WC Variation Swatches WordPress plugin through 1.1.7 does not have an authorization check when updating its settings, which could allow any authenticated users to update them.
Affected versions
max 1.1.7.
Status
vulnerable