Authorization Bypass in Premmerce Wholesale Pricing for WooCommerce by Premmerce
CVE-2025-64285
5.4MEDIUM
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 29 October 2025
What is CVE-2025-64285?
A missing authorization vulnerability in the Premmerce Wholesale Pricing for WooCommerce plugin enables unauthorized access due to incorrectly configured access control security levels. This issue affects all versions up to and including 1.1.10, allowing potential exploitation and unauthorized actions by attackers.
Affected Version(s)
Premmerce Wholesale Pricing for WooCommerce <= n/a