โ† Back to Dashboard

CVE-2025-15662

HIGH NVD
CVSS Score
8.6
Severity
HIGH
Source
NVD
Published
Jul 27, 2026
Description

The Printcart Web to Print Product Designer for WooCommerce WordPress plugin before 2.5.3 does not restrict a user-supplied URL before fetching it server-side and does not enforce a valid authorization check, allowing unauthenticated attackers to read arbitrary local files (including configuration files containing database credentials and secret keys) and to make server-side requests to internal resources.

View Full Details โ† Back