CVE-2025-27001
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Mar 28, 2025
CWE ID 201
Summary
CVE-2025-27001 is a vulnerability affecting Shipmondo, a shipping solution for WooCommerce. This issue permits the insertion of sensitive information into data being sent, exposing confidential data. The vulnerability impacts all versions of Shipmondo from n/a through 5.0.3. This security flaw could potentially lead to unauthorized access or theft of sensitive information during data transfer. Users are strongly advised to update their Shipmondo installations to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.