Medium 6.1
2026-05-01≤ 1.3.4
CVE-2024-13362
Minimum safe version
1.3.2
Update to 1.3.2 or later to address 8 fixable vulnerabilities
CVE-2024-13362
WordPress Custom WooCommerce Checkout Fields Editor Plugin <= 1.3.4 - Cross Site Request Forgery (CSRF) Vulnerability
Freemius SDK <= 2.4.2 - Missing Authorization Checks
CVE-2024-33956
CVE-2024-30518
CVE-2024-1697
WordPress Custom WooCommerce Checkout Fields Editor Plugin <= 1.2.8 is vulnerable to Cross Site Scripting (XSS)
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress Custom WooCommerce Checkout Fields Editor plugin <= 1.2.5 - Sensitive Information Disclosure vulnerability
WordPress Custom WooCommerce Checkout Fields Editor plugin <= 1.2.5 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability