Medium 4.3
2025-06-17< 1.49.1
CVE-2025-48111
Minimum safe version
1.49.1
Update to 1.49.1 or later to address 5 fixable vulnerabilities
CVE-2025-48111
YITH plugins by YITHEMES <= (Various Versions) - Cross-Site Request Forgery
YITH plugins by YITHEMES <= (Various Versions) - Missing Authorization
WordPress YITH PayPal Express Checkout for WooCommerce Plugin <= 1.20.0 is vulnerable to Cross Site Request Forgery (CSRF)
CVE-2019-16251