Back to CVE List

CVE-2025-15662

Vulnerability Description

The Printcart Web to Print Product Designer for WooCommerce WordPress plugin before 2.5.3 does not restrict a user-supplied URL before fetching it server-side and does not enforce a valid authorization check, allowing unauthenticated attackers to read arbitrary local files (including configuration files containing database credentials and secret keys) and to make server-side requests to internal resources.

Vulnerability Details

Published Date
Last Modified
Source
NVD
Vendor
Unknown
Product
Printcart Web to Print Product Designer for WooCommerce

External References

Discussion (0)

Add Comment

No comments yet. Be the first!