CVE-2025-32611
WordPress WooCommerce TBC Credit Card Payment Gateway (Free) Plugin <= 2.0.0 - Reflected Cross Site Scripting (XSS) vulnerability
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in We Are De WooCommerce TBC Credit Card Payment Gateway (Free) woo-tbc-payment-gateway allows Reflected XSS.This issue affects WooCommerce TBC Credit Card Payment Gateway (Free): from n/a through <= 2.0.0.
| CWE | CWE-79 |
| Vendor | we are de |
| Product | woocommerce tbc credit card payment gateway (free) |
| Published | Apr 17, 2025 |
| Last Updated | Apr 1, 2026 |
Stay Ahead of the Next One
Get instant alerts for we are de woocommerce tbc credit card payment gateway (free)
Be the first to know when new unknown vulnerabilities affecting we are de woocommerce tbc credit card payment gateway (free) are published — delivered to Slack, Telegram or Discord.
Get Free Alerts →
Free · No credit card · 60 sec setup
Affected Versions
We Are De / WooCommerce TBC Credit Card Payment Gateway (Free)
0 ≤ 2.0.0
References
Credits
João Pedro S Alcântara (Kinorth) | Patchstack Bug Bounty Program