plugin

Perfit Woocommerce Vulnerabilities

1 known security issue reported for the Perfit Woocommerce WordPress plugin. Most recent disclosed Jan 13, 2026.

1 medium

Running Perfit Woocommerce on your site? Check whether your installed version is affected.

Scan your site free

Perfit WooCommerce <= 1.0.1 - Missing Authorization to Unauthenticated Arbitrary Plugin Settings Deletion

medium

The Perfit WooCommerce plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 1.0.1. This is due to missing authorization checks on the `logout` function called via the `actions` function hooked to `admin_init`. This makes it possible for unauthenticated attackers to delete ar...

CVSS:
5.3
Affected:
up to 1.0.1
Fix:
No patched version reported
Disclosed:
Jan 13, 2026

CVE-2025-14173 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database