Pixel Manager for WooCommerce <= 1.51.1 - Unauthenticated Information Exposure
Pixel Manager for WooCommerce – Conversion Tracking, Google Ads, GA4, TikTok, Dynamic Remarketing
Minimum safe version
1.52.0
Update to 1.52.0 or later to address 10 fixable vulnerabilities
CVE-2025-12545
WordPress Pixel Manager for WooCommerce Plugin <= 1.49.0 is vulnerable to Cross Site Scripting (XSS)
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress Pixel Manager for WooCommerce Plugin <= 1.43.3 is vulnerable to Backdoor
Various Plugins <= Various Version - Use of Polyfill.io
WordPress Pixel Manager for WooCommerce Plugin < 1.32.4 is vulnerable to Cross Site Scripting (XSS)
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress WooCommerce Pixel Manager plugin < 1.14.3 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability
WordPress WooCommerce Pixel Manager plugin < 1.14.3 - Sensitive Information Disclosure vulnerability