High 7.5
2025-11-06< 2.4.4
CVE-2025-60204
Minimum safe version
2.4.4
Update to 2.4.4 or later to address 9 fixable vulnerabilities
CVE-2025-60204
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress WooCommerce Store Toolkit Plugin <= 2.3.8 is vulnerable to Cross Site Scripting (XSS)
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress WooCommerce Store Toolkit Plugin 1.5.5 - Privilege Escalation
WordPress WooCommerce Store Toolkit plugin < 2.3.4 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability
WordPress WooCommerce Store Toolkit plugin < 2.3.4 - Sensitive Information Disclosure vulnerability
CVE-2016-10923
CVE-2016-10922
CVE-2021-25077