{"error":0,"message":null,"data":{"name":"Checkout Field Manager (Checkout Manager) for WooCommerce","plugin":"woocommerce-checkout-manager","link":"https:\/\/wordpress.org\/plugins\/woocommerce-checkout-manager\/","latest":"1789609260","closed":0,"closed_reason":null,"closed_date":null,"vulnerability":[{"uuid":"fab20be894aff55fb5d24970cf1bc93d769919e61ec554af2ceeb627d4a97608","name":"Checkout Field Manager (Checkout Manager) for WooCommerce [woocommerce-checkout-manager] < 4.3","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"4.3","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2019-11807","name":"CVE-2019-11807","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2019-11807","description":"[en] The WooCommerce Checkout Manager plugin before 4.3 for WordPress allows media deletion via the wp-admin\/admin-ajax.php?action=update_attachment_wccm wccm_default_keys_load parameter because of a nopriv_ registration and a lack of capabilities checks.","date":"2019-05-06"},{"id":"e7ecbaa059414fb5e559397ff1d968796bbe86a3","name":"WooCommerce Checkout Manager <= 4.2.6 - Unauthenticated Arbitrary Media Deletion","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/woocommerce-checkout-manager\/woocommerce-checkout-manager-426-unauthenticated-arbitrary-media-deletion","description":"The WooCommerce Checkout Manager plugin before 4.3 for WordPress allows media deletion via the wp-admin\/admin-ajax.php?action=update_attachment_wccm wccm_default_keys_load parameter because of a nopriv_ registration and a lack of capabilities checks.","date":"2019-04-25"},{"id":"36aed820-df7f-4b0f-9610-af397009d429","name":"WooCommerce Checkout Manager &lt;= 4.2.6 - Arbitrary File Upload","link":"https:\/\/wpscan.com\/vulnerability\/36aed820-df7f-4b0f-9610-af397009d429","description":"The Checkout Manager for WooCommerce WordPress plugin was affected by an Arbitrary File Upload security vulnerability.","date":null}],"impact":{"cvss":{"version":"3.0","vector":"CVSS:3.0\/AV:N\/AC:L\/PR:N\/UI:N\/S:U\/C:N\/I:H\/A:N","av":"n","ac":"l","pr":"n","ui":"n","s":"u","c":"n","i":"h","a":"n","score":"7.5","severity":"h","exploitable":"3.9","impact":"3.6"},"cvss3":{"version":"3.0","vector":"CVSS:3.0\/AV:N\/AC:L\/PR:N\/UI:N\/S:U\/C:N\/I:H\/A:N","score":"7.5","severity":"high","av":"network","ac":"low","pr":"none","ui":"none","s":"unchanged","c":"none","i":"high","a":"none","exploitable":"3.9","impact":"3.6"},"cwe":[{"cwe":"CWE-434","name":"Unrestricted Upload of File with Dangerous Type","description":"The product allows the upload or transfer of dangerous file types that are automatically processed within its environment."}]}},{"uuid":"ba635b0c128252d8a7651f61fc42ec2e1693ac0d27d43831f506c05ab539fb3e","name":"Checkout Field Manager (Checkout Manager) for WooCommerce [woocommerce-checkout-manager] < 4.2.7","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"4.2.7","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"d75aa64607516268af5f2337c8e7314a7b9274cc","name":"WordPress WooCommerce Checkout Manager plugin 4.2.6 (latest) - Arbitrary File Upload vulnerability","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/woocommerce-checkout-manager\/vulnerability\/wordpress-woocommerce-checkout-manager-plugin-4-2-6-latest-arbitrary-file-upload-vulnerability","description":"Arbitrary File Upload vulnerability found in WordPress WooCommerce Checkout Manager plugin (version 4.2.6).","date":"2019-04-26"}],"impact":[]},{"uuid":"736bafdc6052ac13e695275b31c21aa559345dcbc6d63c091e1def1f227df8f1","name":"Checkout Field Manager (Checkout Manager) for WooCommerce [woocommerce-checkout-manager] < 5.5.7","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"5.5.7","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"440c89a3314a7392f5e84bac3119269af3df260e","name":"WordPress Checkout Fields Manager for WooCommerce plugin <= 5.5.6 - Reflected Cross-Site Scripting (XSS) vulnerability","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/woocommerce-checkout-manager\/vulnerability\/wordpress-checkout-fields-manager-for-woocommerce-plugin-5-5-6-reflected-cross-site-scripting-xss-vulnerability","description":"Reflected Cross-Site Scripting (XSS) vulnerability discovered by WPScanTeam in WordPress Checkout Fields Manager for WooCommerce plugin (versions <= 5.5.6).\nUpdate the WordPress Checkout Fields Manager for WooCommerce plugin to the latest available version (at least 5.5.7).","date":"2022-06-14"}],"impact":[]},{"uuid":"d9659c893da62d8328bb975d2fbfb6dcf24c44dd816da46401a90ab0a299f9f3","name":"Checkout Field Manager (Checkout Manager) for WooCommerce [woocommerce-checkout-manager] < 5.5.7","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"5.5.7","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"441cf099b12167876da513d2b9f7354a6163f891","name":"Checkout Fields Manager for WooCommerce <= 5.5.6 - Reflected Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/woocommerce-checkout-manager\/checkout-fields-manager-for-woocommerce-556-reflected-cross-site-scripting","description":"The Checkout Fields Manager for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting  in versions up to, and including, 5.5.6 due to insufficient input sanitization and output escaping. This makes it possible for attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.","date":"2022-06-14"}],"impact":[]},{"uuid":"05e5660b33ac655ee5d4184fc7fb608cb4df52fe7a4019fef6c9884fcc0f7397","name":"Checkout Field Manager (Checkout Manager) for WooCommerce [woocommerce-checkout-manager] < 5.5.7","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"5.5.7","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"ea617acd-348a-4060-a8bf-08ab3b569577","name":"Checkout Fields Manager for WooCommerce &lt; 5.5.7 - Reflected Cross-Site Scripting","link":"https:\/\/wpscan.com\/vulnerability\/ea617acd-348a-4060-a8bf-08ab3b569577","description":"The plugin does not escape some URLs before outputting them back in attributes, leading to Reflected Cross-Site Scripting","date":null}],"impact":[]},{"uuid":"f5748d2932323760f76a23387a4814407737661af719beb27c06c09e5b2086b8","name":"Checkout Field Manager (Checkout Manager) for WooCommerce [woocommerce-checkout-manager] < 7.3.1","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"7.3.1","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2023-47681","name":"CVE-2023-47681","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2023-47681","description":"[en] Missing Authorization vulnerability in QuadLayers WooCommerce Checkout Manager.This issue affects WooCommerce Checkout Manager: from n\/a through 7.3.0.","date":"2024-06-19"},{"id":"7328e76bfaadab891e85de37237d21cd87413eb2","name":"WordPress  WooCommerce Checkout Manager Plugin  <= 7.3.0 is vulnerable to Broken Access Control","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/woocommerce-checkout-manager\/vulnerability\/wordpress-woocommerce-checkout-manager-plugin-7-3-0-broken-access-control-vulnerability","description":"No patched version is available. No reply from the vendor.\nRafie Muhammad (Patchstack) discovered and reported this Broken Access Control vulnerability in WordPress WooCommerce Checkout Manager Plugin. A broken access control issue refers to a missing authorization, authentication or nonce token check in a function that could lead to an unprivileged user to executing a certain higher privileged action. This vulnerability has not been known to be fixed yet.","date":"2023-11-09"},{"id":"52aab419b56b2bea31f28f5e782e84be23a6a6c2","name":"WooCommerce Checkout Manager <= 7.3.0 - Missing Authorization","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/woocommerce-checkout-manager\/woocommerce-checkout-manager-730-missing-authorization","description":"The WooCommerce Checkout Manager plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the ajax_order_attachment_upload and ajax_delete_attachment functions hooked via AJAX in versions up to, and including, 7.3.0. This makes it possible for unauthenticated attackers to update arbitrary order attachments and delete them.","date":"2023-11-09"},{"id":"23a21bf4-0617-4ad5-85f0-8bdfd9b90d4b","name":"WooCommerce Checkout Manager &lt; 7.3.1 - Missing Authorization","link":"https:\/\/wpscan.com\/vulnerability\/23a21bf4-0617-4ad5-85f0-8bdfd9b90d4b","description":"The WooCommerce Checkout Manager plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the ajax_order_attachment_upload and ajax_delete_attachment functions hooked via AJAX in versions up to, and including, 7.3.0. This makes it possible for unauthenticated attackers to update arbitrary order attachments and delete them.","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:N\/S:U\/C:N\/I:L\/A:L","av":"n","ac":"l","pr":"n","ui":"n","s":"u","c":"n","i":"l","a":"l","score":"6.5","severity":"m","exploitable":"3.9","impact":"2.5"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:N\/S:U\/C:N\/I:L\/A:L","score":"6.5","severity":"medium","av":"network","ac":"low","pr":"none","ui":"none","s":"unchanged","c":"none","i":"low","a":"low","exploitable":"3.9","impact":"2.5"},"cwe":[{"cwe":"CWE-862","name":"Missing Authorization","description":"The product does not perform an authorization check when an actor attempts to access a resource or perform an action."}],"ssvc":{"exploitation":"none","automatable":"yes","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"c175b1e9b116702fd768723a123fc4d5beb3a58d86ffd22cad452f614e538e50","name":"Checkout Field Manager (Checkout Manager) for WooCommerce [woocommerce-checkout-manager] < 7.8.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"7.8.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2025-12500","name":"CVE-2025-12500","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2025-12500","description":"[en] The Checkout Field Manager (Checkout Manager) for WooCommerce plugin for WordPress is vulnerable to unauthenticated limited file upload in all versions up to, and including, 7.8.1. This is due to the plugin not properly verifying that a user is authorized to perform file upload actions via the \"ajax_checkout_attachment_upload\" function. This makes it possible for unauthenticated attackers to upload files to the server, though file types are limited to WordPress's default allowed MIME types (images, documents, etc.).","date":"2026-02-19"},{"id":"bdae08b0270c4330cf8a82df424ddb4e989fa2d2","name":"Checkout Field Manager (Checkout Manager) for WooCommerce <= 7.8.1 - Unauthenticated Limited File Upload","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/woocommerce-checkout-manager\/checkout-field-manager-checkout-manager-for-woocommerce-781-unauthenticated-limited-file-upload","description":"The Checkout Field Manager (Checkout Manager) for WooCommerce plugin for WordPress is vulnerable to unauthenticated limited file upload in all versions up to, and including, 7.8.1. This is due to the plugin not properly verifying that a user is authorized to perform file upload actions via the \"ajax_checkout_attachment_upload\" function. This makes it possible for unauthenticated attackers to upload files to the server, though file types are limited to WordPress's default allowed MIME types (images, documents, etc.).","date":"2026-02-18"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:N\/S:U\/C:N\/I:L\/A:N","av":"n","ac":"l","pr":"n","ui":"n","s":"u","c":"n","i":"l","a":"n","score":"5.3","severity":"m","exploitable":"3.9","impact":"1.4"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:N\/S:U\/C:N\/I:L\/A:N","score":"5.3","severity":"medium","av":"network","ac":"low","pr":"none","ui":"none","s":"unchanged","c":"none","i":"low","a":"none","exploitable":"3.9","impact":"1.4"},"cwe":[{"cwe":"CWE-434","name":"Unrestricted Upload of File with Dangerous Type","description":"The product allows the upload or transfer of dangerous file types that are automatically processed within its environment."}],"ssvc":{"exploitation":"none","automatable":"yes","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"f6e0e36f84243164beab2e7debcb4b5fb52f4cf4aaef86d77cab555e9a11a719","name":"Checkout Field Manager (Checkout Manager) for WooCommerce [woocommerce-checkout-manager] < 7.8.6","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"7.8.6","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2025-13930","name":"CVE-2025-13930","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2025-13930","description":"[en] The Checkout Field Manager (Checkout Manager) for WooCommerce plugin for WordPress is vulnerable to authorization bypass in versions up to, and including, 7.8.5. This is due to the plugin not properly verifying that a user is authorized to delete an attachment combined with flawed guest order ownership validation. This makes it possible for unauthenticated attackers to delete attachments associated with guest orders using only the publicly available wooccm_upload nonce and attachment ID.","date":"2026-02-19"},{"id":"f196cf09e74687e213026d8c1114410904ca5340","name":"Checkout Field Manager (Checkout Manager) for WooCommerce <= 7.8.5 - Missing Authorization to Unauthenticated Arbitrary Attachment Deletion","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/woocommerce-checkout-manager\/checkout-field-manager-checkout-manager-for-woocommerce-785-missing-authorization-to-unauthenticated-arbitrary-attachment-deletion","description":"The Checkout Field Manager (Checkout Manager) for WooCommerce plugin for WordPress is vulnerable to authorization bypass in versions up to, and including, 7.8.5. This is due to the plugin not properly verifying that a user is authorized to delete an attachment combined with flawed guest order ownership validation. This makes it possible for unauthenticated attackers to delete attachments associated with guest orders using only the publicly available wooccm_upload nonce and attachment ID.","date":"2026-02-18"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:N\/S:U\/C:N\/I:L\/A:N","av":"n","ac":"l","pr":"n","ui":"n","s":"u","c":"n","i":"l","a":"n","score":"5.3","severity":"m","exploitable":"3.9","impact":"1.4"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:N\/S:U\/C:N\/I:L\/A:N","score":"5.3","severity":"medium","av":"network","ac":"low","pr":"none","ui":"none","s":"unchanged","c":"none","i":"low","a":"none","exploitable":"3.9","impact":"1.4"},"cwe":[{"cwe":"CWE-862","name":"Missing Authorization","description":"The product does not perform an authorization check when an actor attempts to access a resource or perform an action."}],"ssvc":{"exploitation":"none","automatable":"yes","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"cec2b6fb357e43c64c1cdabd5e1da56de25a344da6cceff7bb9350d22c7c38b3","name":"Checkout Field Manager (Checkout Manager) for WooCommerce [woocommerce-checkout-manager] < 7.9.7","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"7.9.7","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2026-87831","name":"CVE-2026-87831","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-87831","description":"[en] The Checkout Field Manager (Checkout Manager) for WooCommerce WordPress plugin before 7.9.7 does not properly validate the ownership of an attachment before deleting it, allowing any authenticated user such as a customer to delete arbitrary media attachments belonging to other users.","date":"2026-09-17"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:N\/I:L\/A:N","av":"n","ac":"l","pr":"l","ui":"n","s":"u","c":"n","i":"l","a":"n","score":"4.3","severity":"m","exploitable":"0.0","impact":"0.0"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:N\/I:L\/A:N","score":"4.3","severity":"medium","av":"network","ac":"low","pr":"low","ui":"none","s":"unchanged","c":"none","i":"low","a":"none","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-862","name":"Missing Authorization","description":"The product does not perform an authorization check when an actor attempts to access a resource or perform an action."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"b7997196e14a3a43c44858b7d66f997d0765678527b6a492491a15887870b20a","name":"Checkout Field Manager (Checkout Manager) for WooCommerce [woocommerce-checkout-manager] < 7.9.7","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"7.9.7","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2026-87829","name":"CVE-2026-87829","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-87829","description":"[en] The Checkout Field Manager (Checkout Manager) for WooCommerce WordPress plugin before 7.9.7 does not properly validate the ownership of an attachment before deleting it, allowing any authenticated user such as a customer to delete arbitrary media attachments belonging to other users.","date":"2026-09-17"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:N\/I:L\/A:N","av":"n","ac":"l","pr":"l","ui":"n","s":"u","c":"n","i":"l","a":"n","score":"4.3","severity":"m","exploitable":"0.0","impact":"0.0"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:N\/I:L\/A:N","score":"4.3","severity":"medium","av":"network","ac":"low","pr":"low","ui":"none","s":"unchanged","c":"none","i":"low","a":"none","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-639","name":"Authorization Bypass Through User-Controlled Key","description":"The system's authorization functionality does not prevent one user from gaining access to another user's data or record by modifying the key value identifying the data."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}}]},"updated":"1789708401"}