Shoppable Images (Lookbook) for WooCommerce
Shoppable Images (Lookbook) for WooCommerce has 3 disclosed vulnerabilities in the WordSec catalog, reported between 2023 and 2026; all 3 are fixed as of September 2026. Their average CVSS score is 5.3, and the most serious one scores 6.3 out of 10. 2023 was the busiest year with 2 disclosures.
The most common weakness is Missing Authorization, behind 2 of the records (67%). Other recurring categories include Cross-Site Scripting.
Every one of the 3 issues recorded for Shoppable Images (Lookbook) for WooCommerce has a vendor fix available, so running the current release closes all known holes.
2 independent researchers contributed these findings, most of them (2) reported by Rio Darmawan. Shoppable Images (Lookbook) for WooCommerce is installed on roughly 6,000 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 7.0.4.
Shoppable Images Lite <= 1.2.3 - Missing Authorization
Read the full analysisVulnerability Records

Shoppable Images (Lookbook) for WooCommerce
Author
studiowombat
Increase traffic through your website by creating shoppable images: images containing different hotspots which link to various products or pages. Features Create shoppable images in 3 easy steps, straight from the WordPress admin Change tag colors Easily link hotspots to your products or any page Add shoppable images on posts or pages by using shortcodes Or add it anywhere in your theme through PHP Woocommerce 3.6+ compatible Quick links » Demo » Documentation » Pro Version Premium features More info about the premium version can be found here Support for variable products. Button can also automatically add the products to the cart (without page reload). Settings to tweak the tag design even further: from colors to size. Choose between multiple tag-icons. Tag pulse animations to make them stand out. Popup animations to make everything smoother. Option to open the popup on hover instead of on click. Add unlimited images. Requirements PHP 5.6 or higher WordPress 3.7 or higher Optinional: WooCommerce 3.6+
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C