Medium 5.9
2025-05-24< 1.3.0
eMagicOne Store Manager for WooCommerce <= 1.2.5 - Unauthenticated Arbitrary File Read
Minimum safe version
1.3.0
Update to 1.3.0 or later to address 4 fixable vulnerabilities
eMagicOne Store Manager for WooCommerce <= 1.2.5 - Unauthenticated Arbitrary File Read
eMagicOne Store Manager for WooCommerce <= 1.2.5 - Unauthenticated Arbitrary File Upload via set_image()
eMagicOne Store Manager for WooCommerce <= 1.2.5 - Unauthenticated Arbitrary File Upload via set_file()
WordPress eMagicOne Store Manager Plugin <= 1.2.5 is vulnerable to Arbitrary File Deletion