Medium 4.3
2025-01-24< 2.4.6
CVE-2025-23991
Minimum safe version
2.4.6
Update to 2.4.6 or later to address 6 fixable vulnerabilities
CVE-2025-23991
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress Product Size Charts Plugin for WooCommerce Plugin <= 2.4.3 is vulnerable to Cross Site Scripting (XSS)
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress Product Size Charts Plugin for WooCommerce plugin <= 2.2.2 - Sensitive Information Disclosure vulnerability
WordPress Product Size Charts Plugin for WooCommerce plugin <= 2.2.2 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability