CVE-2025-27001

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Mar 28, 2025
CWE ID 201

Summary

CVE-2025-27001 is a vulnerability affecting Shipmondo, a shipping solution for WooCommerce. This issue permits the insertion of sensitive information into data being sent, exposing confidential data. The vulnerability impacts all versions of Shipmondo from n/a through 5.0.3. This security flaw could potentially lead to unauthorized access or theft of sensitive information during data transfer. Users are strongly advised to update their Shipmondo installations to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share