CVE-2025-69378
WordPress Product Filter for WooCommerce plugin <= 9.1.2 - Privilege Escalation vulnerability
CVSS Score
7.3
EPSS Score
0.0%
EPSS Percentile
0th
Incorrect Privilege Assignment vulnerability in XforWooCommerce Product Filter for WooCommerce prdctfltr allows Privilege Escalation.This issue affects Product Filter for WooCommerce: from n/a through <= 9.1.2.
| CWE | CWE-266 |
| Vendor | xforwoocommerce |
| Product | product filter for woocommerce |
| Published | Feb 20, 2026 |
| Last Updated | Apr 1, 2026 |
Stay Ahead of the Next One
Get instant alerts for xforwoocommerce product filter for woocommerce
Be the first to know when new high vulnerabilities affecting xforwoocommerce product filter for woocommerce are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
XforWooCommerce / Product Filter for WooCommerce
0 โค 9.1.2
References
Credits
Phat RiO | Patchstack Bug Bounty Program