Metrics
Affected Vendors & Products
Solution
Update the WordPress YITH PayPal Express Checkout for WooCommerce plugin to the latest available version (at least 1.49.1).
Workaround
No workaround given by the vendor.
Tue, 17 Jun 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 17 Jun 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Cross-Site Request Forgery (CSRF) vulnerability in YITHEMES YITH PayPal Express Checkout for WooCommerce allows Cross Site Request Forgery. This issue affects YITH PayPal Express Checkout for WooCommerce: from n/a through 1.49.0. | |
Title | WordPress YITH PayPal Express Checkout for WooCommerce plugin <= 1.49.0 - Cross Site Request Forgery (CSRF) vulnerability | |
Weaknesses | CWE-352 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-06-17T15:39:50.617Z
Reserved: 2025-05-15T17:54:48.128Z
Link: CVE-2025-48111

Updated: 2025-06-17T15:39:42.706Z

Status : Awaiting Analysis
Published: 2025-06-17T15:15:44.133
Modified: 2025-06-17T20:50:23.507
Link: CVE-2025-48111

No data.

Updated: 2025-06-27T09:26:49Z