menu
techminis

A naukri.com initiative

google-web-stories
Home

>

Technology News

>

Critical s...
source image

Tech Radar

3d

read

4

img
dot

Image Credit: Tech Radar

Critical security flaw could leave over 100,000 WordPress sites at risk

  • A critical-severity vulnerability in the TI WooCommerce Wishlist WordPress plugin could expose over 100,000 websites to risks, including complete website takeover.
  • The flaw in the plugin allows threat actors to upload arbitrary files to the server without authentication, posing a significant security threat with a severity score of 10/10.
  • As of now, the vulnerability is tracked as CVE-2025-47577, and a patch has not been released, advising users to disable or remove the plugin until a fix is available.
  • Exploitation is only possible on websites also using the WC Fields Factory plugin with enabled integration on the TI WooCommerce Wishlist plugin, adding an additional layer of requirement for successful attacks.

Read Full Article

like

Like

For uninterrupted reading, download the app