« Back to list

Wpclever

Wpclever WPC Name Your Price: vulnerabilities and CVEs

Wpclever WPC Name Your Price has 2 published vulnerabilities, 2 of them in the last 12 months. 0 are rated critical and 0 are listed by CISA as actively exploited.

CVEs2
Last 12 months2
Critical0
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2026-16620High (7.5)0.37%—Aug 6, 2026
The WPC Name Your Price for WooCommerce WordPress plugin before 2.2.5 does not enforce its server-side price allowlist for products configured in "Select" price mode, allowing an unauthenticated visitor to add such a…
CVE-2025-12115High (7.5)0.30%—Oct 31, 2025
The WPC Name Your Price for WooCommerce plugin for WordPress is vulnerable to unauthorized price alteration in all versions up to, and including, 2.1.9. This is due to the plugin not disabling the ability to name a…

🎯 How it gets exploited (ATT&CK techniques)

  1. T1190 Exploit Public-Facing Application2
  2. T1565.002 Transmitted Data Manipulation2

Number of CVEs of this technology mapped to each exploitation or primary-impact technique.

Other products by Wpclever