CVE-2025-32929
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Apr 15, 2025
CWE ID 862
Summary
CVE-2025-32929 is a new vulnerability affecting the Barcode Generator for WooCommerce plugin. This missing authorization issue arises from incorrectly configured access control security levels within the software. Hackers can exploit this flaw to gain unauthorized access, posing a significant risk to websites utilizing the plugin from version n/a through 2.0.4. The vulnerability was identified by Dmitry V., the CEO of "UKR Solution." Organizations using the affected plugin version are advised to update it as soon as possible to mitigate this threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- WordPress