Permalink Manager for WooCommerce
Permalink Manager for WooCommerce has one disclosed vulnerability in the WordSec catalog, all reported in 2026; it is fixed as of August 2026. Their average CVSS score is 4.3, and the most serious one scores 4.3 out of 10.
The most common weakness is Cross-Site Request Forgery (CSRF), behind 1 of the records (100%).
The one issue recorded for Permalink Manager for WooCommerce has a vendor fix available, so running the current release closes it.
All of these findings were reported by dodoh4t. Permalink Manager for WooCommerce is installed on roughly 8,000 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 7.0.4.
CVE-2026-57758Permalink Manager for WooCommerce <= 1.0.8.3 - Cross-Site Request Forgery
Read the full analysisVulnerability Records

Permalink Manager for WooCommerce
Author
BeRocket
Permalink Manager for WooCommerce is developed to provide your store nicer urls. Main advantages Redirect duplicate pages with the 301 status Option to configure product, category and tag separately from each other Option to remove tags base added by WooCommerce Great work speed General options Prefix – option to add extra level to the link Update breadcrumbs – option to add Prefix( extra level ) to the WooCommerce breadcrumbs Product options Only slug can be seen Main product category + product slugs Main category full hierarchy + product slug Category options Only slug can be seen Main category full hierarchy + product slug Tag options Only slug can be seen Pre-configured options Automatic adding of 301 redirects to duplicated pages to improve SEO and site navigation Use YOAST SEO plugin primary categories This plugin is compatible with Advanced AJAX Product Filters Yoast SEO WPML WooCommerce Multilingual BeRocket’s plugins
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C