Improper Input Validation in ThemesGrove WP SmartPay Payment System
CVE-2025-32689
7.5HIGH
What is CVE-2025-32689?
The WP SmartPay plugin by ThemesGrove exhibits a vulnerability due to improper validation of specified quantities in user input. This flaw could allow attackers to manipulate input parameters, leading to potential unauthorized actions within the payment system. Users are advised to update to the latest version to mitigate risks associated with this vulnerability.
Affected Version(s)
WP SmartPay <= 2.7.13