WooCommerce Affiliate Plugin – Coupon Affiliates, CVE-2025-54025
- CVE, Research URL
- Published on
- Aug 20, 2025
- Research Description
- Missing Authorization vulnerability in Elliot Sowersby / RelyWP Coupon Affiliates allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Coupon Affiliates: from n/a through 6.4.0.
- Affected versions
-
max 6.4.2.
- Status
-
vulnerable
| Previous vulnerability researches |
|---|
| YITH WooCommerce Ajax Product Filter (21a5f00a631cbb9404c2e7f770857be57e7be35e) , Jun 07, 2024 |
| YITH WooCommerce Ajax Product Filter (CVE-2024-37943) , Jul 14, 2024 |