CVE-2025-32929

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Apr 15, 2025
CWE ID 862

Summary

CVE-2025-32929 is a new vulnerability affecting the Barcode Generator for WooCommerce plugin. This missing authorization issue arises from incorrectly configured access control security levels within the software. Hackers can exploit this flaw to gain unauthorized access, posing a significant risk to websites utilizing the plugin from version n/a through 2.0.4. The vulnerability was identified by Dmitry V., the CEO of "UKR Solution." Organizations using the affected plugin version are advised to update it as soon as possible to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share