cleantalk
Vulnerabilities and Security Researches

Vulnerabilities and security researches foryith-paypal-express-checkout-for-woocommerce yith-paypal-express-checkout-for-woocommerce

Direction: ascending
Jun 07, 2024

YITH PayPal Express Checkout for WooCommerce # CVE-2019-16251

CVE, Research URL

CVE-2019-16251

Date
Oct 31, 2019
Research Description
plugin-fw/lib/yit-plugin-panel-wc.php in the YIT Plugin Framework through 3.3.8 for WordPress allows authenticated options changes.
Affected versions
Min -, max -.
Status
vulnerable
Jun 18, 2025

YITH PayPal Express Checkout for WooCommerce # CVE-2025-48111

CVE, Research URL

CVE-2025-48111

Date
Jun 17, 2025
Research Description
Cross-Site Request Forgery (CSRF) vulnerability in YITHEMES YITH PayPal Express Checkout for WooCommerce allows Cross Site Request Forgery. This issue affects YITH PayPal Express Checkout for WooCommerce: from n/a through 1.49.0.
Affected versions
Min -, max -.
Status
vulnerable