cleantalk
Vulnerabilities and Security Researches

Accounting for WooCommerce, CVE-2025-30835

CVE, Research URL

CVE-2025-30835

Published on
Mar 31, 2025
Research Description
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Bastien Ho Accounting for WooCommerce allows PHP Local File Inclusion. This issue affects Accounting for WooCommerce: from n/a through 1.6.8.
Affected versions
Min -, max 1.6.9.
Status
vulnerable