CVE-2025-39364
WordPress Product Category Slider for WooCommerce plugin <= 4.3.4 - Local File Inclusion vulnerability
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in PluginEver Product Category Slider for WooCommerce woo-category-slider-by-pluginever allows PHP Local File Inclusion.This issue affects Product Category Slider for WooCommerce: from n/a through <= 4.3.4.
| CWE | CWE-98 |
| Vendor | pluginever |
| Product | product category slider for woocommerce |
| Published | May 19, 2025 |
| Last Updated | Apr 1, 2026 |
Stay Ahead of the Next One
Get instant alerts for pluginever product category slider for woocommerce
Be the first to know when new unknown vulnerabilities affecting pluginever product category slider for woocommerce are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
PluginEver / Product Category Slider for WooCommerce
0 โค 4.3.4
References
Credits
Muhammad Yudha - DJ | Patchstack Bug Bounty Program