Browse all 3 CVE security advisories affecting fraudlabspro. AI-powered Chinese analysis, POCs, and references for each vulnerability.
FraudLabsPro provides fraud detection and risk assessment services for online businesses, analyzing transactions to prevent fraudulent activities. Historically, the platform has been associated with cross-site scripting (XSS) and remote code execution (RCE) vulnerabilities, often stemming from improper input validation and insecure API endpoints. Security assessments have revealed potential privilege escalation risks due to insufficient access controls. While no major public security incidents have been documented, the presence of three CVEs indicates ongoing security challenges that require continuous patching and secure coding practices to maintain system integrity and protect client data.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-49320 | WordPress FraudLabs Pro for WooCommerce plugin <= 2.22.11 - Broken Access Control Vulnerability — FraudLabs Pro for WooCommerceCWE-862 | 5.3 | Medium | 2025-06-06 |
| CVE-2025-32659 | WordPress FraudLabs Pro for WooCommerce plugin <= 2.22.8 - CSRF to Stored XSS vulnerability — FraudLabs Pro for WooCommerceCWE-352 | 7.1 | High | 2025-04-09 |
This page lists every published CVE security advisory associated with fraudlabspro. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.