Medium 6.5
2025-01-15< 1.1.1
CVE-2025-22724
Minimum safe version
1.1.1
Update to 1.1.1 or later to address 6 fixable vulnerabilities
CVE-2025-22724
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress Product Carousel For WooCommerce – WoorouSell Plugin < 1.1.0 is vulnerable to Cross Site Scripting (XSS)
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress Product Carousel For WooCommerce – WoorouSell plugin < 1.0.9 - Sensitive Information Disclosure vulnerability
WordPress Product Carousel For WooCommerce – WoorouSell plugin < 1.0.9 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability