Spreadsheet Price Changer for WooCommerce and WP E-commerce – Light, CVE-2025-39378
- CVE, Research URL
- Home page URL
-
Security reports for Spreadsheet Price Changer for WooCommerce and WP E-commerce – Light
- Published on
- Apr 24, 2025
- Research Description
- Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Holest Engineering Spreadsheet Price Changer for WooCommerce and WP E-commerce – Light allows PHP Local File Inclusion. This issue affects Spreadsheet Price Changer for WooCommerce and WP E-commerce – Light: from n/a through 2.4.37.
- Affected versions
-
max 2.4.37.
- Status
-
vulnerable
| Previous vulnerability researches |
|---|
| Hitsteps Web Analytics (CVE-2023-45268) , Jun 06, 2024 |
| Hitsteps Web Analytics (CVE-2023-45057) , Jun 06, 2024 |