cleantalk
Vulnerabilities and Security Researches

Active Products Tables for WooCommerce. Professional products tables for WooCommerce store , CVE-2025-1514

CVE, Research URL

CVE-2025-1514

Published on
Mar 26, 2025
Research Description
The Active Products Tables for WooCommerce. Use constructor to create tables plugin for WordPress is vulnerable to unauthorized filter calling due to insufficient restrictions on the get_smth() function in all versions up to, and including, 1.0.6.7. This makes it possible for unauthenticated attackers to call arbitrary WordPress filters with a single parameter.
Affected versions
max 1.0.6.8.
Status
vulnerable