CVE-2025-47649

Path Traversal: '.../...//' vulnerability in StackWC Open Close WooCommerce Store woc-open-close allows PHP Local File Inclusion.This issue affects Open Close WooCommerce Store: from n/a through <= 4.9.9.
Configurations

No configuration.

History

28 Apr 2026, 19:32

Type Values Removed Values Added
Summary (en) Path Traversal: '.../...//' vulnerability in StackWC Open Close WooCommerce Store woc-open-close allows PHP Local File Inclusion.This issue affects Open Close WooCommerce Store: from n/a through <= 5.0.0. (en) Path Traversal: '.../...//' vulnerability in StackWC Open Close WooCommerce Store woc-open-close allows PHP Local File Inclusion.This issue affects Open Close WooCommerce Store: from n/a through <= 4.9.9.

23 Apr 2026, 15:30

Type Values Removed Values Added
Summary (en) Path Traversal: '.../...//' vulnerability in StackWC Open Close WooCommerce Store woc-open-close allows PHP Local File Inclusion.This issue affects Open Close WooCommerce Store: from n/a through <= 4.9.9. (en) Path Traversal: '.../...//' vulnerability in StackWC Open Close WooCommerce Store woc-open-close allows PHP Local File Inclusion.This issue affects Open Close WooCommerce Store: from n/a through <= 5.0.0.
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.8

01 Apr 2026, 17:24

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 8.8
v2 : unknown
v3 : unknown
Summary (en) Path Traversal vulnerability in ilmosys Open Close WooCommerce Store allows PHP Local File Inclusion. This issue affects Open Close WooCommerce Store: from n/a through 4.9.5. (en) Path Traversal: '.../...//' vulnerability in StackWC Open Close WooCommerce Store woc-open-close allows PHP Local File Inclusion.This issue affects Open Close WooCommerce Store: from n/a through <= 4.9.9.
References
  • {'url': 'https://patchstack.com/database/wordpress/plugin/woc-open-close/vulnerability/wordpress-open-close-woocommerce-store-4-9-5-local-file-inclusion-vulnerability?_s_id=cve', 'source': 'audit@patchstack.com'}
  • () https://patchstack.com/database/Wordpress/Plugin/woc-open-close/vulnerability/wordpress-open-close-woocommerce-store-4-9-5-local-file-inclusion-vulnerability?_s_id=cve -

08 May 2025, 14:39

Type Values Removed Values Added
Summary
  • (es) La vulnerabilidad de path traversal en ilmosys Open Close WooCommerce Store permite la inclusión de archivos locales en PHP. Este problema afecta a la tienda WooCommerce Open Close desde n/d hasta la versión 4.9.5.

07 May 2025, 15:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-07 15:16

Updated : 2026-04-28 19:32


NVD link : CVE-2025-47649

Mitre link : CVE-2025-47649

CVE.ORG link : CVE-2025-47649


JSON object : View

Products Affected

No product.

CWE
CWE-35

Path Traversal: '.../...//'