Cross-Site Request Forgery Vulnerability in SimplePay for WooCommerce by Codemstory
CVE-2025-47661
5.4MEDIUM
What is CVE-2025-47661?
A vulnerability has been identified in the SimplePay for WooCommerce plugin by Codemstory, where an attacker could exploit Cross-Site Request Forgery (CSRF) vulnerabilities. This issue allows unauthorized commands to be transmitted from a user that the web application trusts, potentially compromising user accounts and sensitive information. Users of versions from n/a through 5.2.11 are urged to apply the necessary security measures.
Affected Version(s)
워드프레스 결제 심플페이 <= 5.2.11