CVE-2025-24639

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Feb 3, 2025
CWE ID 201

Summary

CVE-2025-24639 is a vulnerability affecting the GREYS Korea plugin for WooCommerce. It allows an attacker to inject sensitive information into outgoing data, potentially exposing embedded sensitive data to unauthorized users. This issue affects versions of the plugin from n/a through 1.1.11. Successful exploitation of this vulnerability could lead to significant data breaches and potential financial loss for affected organizations.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share