Eshop Magic
Eshop Magic has one disclosed vulnerability in the WordSec catalog, all reported in 2012; it is fixed as of September 2026. Their average CVSS score is 5.3, and the most serious one scores 5.3 out of 10.
The most common weakness is Path Traversal, behind 1 of the records (100%).
The one issue recorded for Eshop Magic has a vendor fix available, so running the current release closes it.
Eshop Magic is installed on roughly 10 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 3.5.2.
Eshop Magic < 0.2 - Arbitrary File Read
Read the full analysisVulnerability Records
Eshop Magic
Author
CPK Web Solutions
Our goal is to help you get the most out of the eShop plugin. If you need help configuring eShop, repairing a broken install, tweaking the look and feel, changing the fields in checkout, altering the way products appear, or troubleshooting a problem… install now. This plugin will be growing rapidly so even if it doesn’t have what you need right now, it probably will very soon.
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C