All 5 CVE vulnerabilities found in WooCommerce Designer Pro, with AI-generated Chinese analysis, references, and POCs.
Vendor: HaruTheme
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-57329 | WordPress WooCommerce Designer Pro plugin <= 1.9.34 - Cross Site Scripting (XSS) vulnerability CWE-79 | 6.5 | Medium | 2026-06-29 |
| CVE-2025-10897 | WooCommerce Designer Pro <= 1.9.28 - Unauthenticated Arbitrary File Read CWE-22 | 8.6 | High | 2025-10-31 |
| CVE-2025-6440 | WooCommerce Designer Pro <= 1.9.26 - Unauthenticated Arbitrary File Upload CWE-434 | 9.8 | Critical | 2025-10-24 |
| CVE-2025-6439 | WooCommerce Designer Pro <= 1.9.26 - Unauthenticated Arbitrary File Deletion CWE-22 | 9.8 | Critical | 2025-10-11 |
| CVE-2025-60219 | WordPress WooCommerce Designer Pro Plugin <= 1.9.24 - Arbitrary File Upload Vulnerability CWE-434 | 10.0 | Critical | 2025-09-26 |
All 5 known CVE vulnerabilities affecting WooCommerce Designer Pro with full Chinese analysis, references, and POCs where available.