Auto Coupons for WooCommerce
Auto Coupons for WooCommerce has one disclosed vulnerability in the WordSec catalog, all reported in 2024; it is fixed as of September 2026. Their average CVSS score is 6.1, and the most serious one scores 6.1 out of 10.
The most common weakness is Cross-Site Scripting, behind 1 of the records (100%).
The one issue recorded for Auto Coupons for WooCommerce has a vendor fix available, so running the current release closes it.
All of these findings were reported by Le Ngoc Anh. Auto Coupons for WooCommerce is installed on roughly 3,000 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 7.1.
CVE-2024-35733Auto Coupons for WooCommerce <= 3.0.14 - Reflected Cross-Site Scripting
Read the full analysisVulnerability Records

Auto Coupons for WooCommerce
Author
RLDD
woocommerceApply WooCommerce Coupons automatically with a simple, fast and lightweight plugin. Features ☑ Unlimited Auto Apply Coupons using native WooCommerce coupon conditions ☑ Set Minimum Product Quantities for coupons ☑ Apply Coupons by URL when a specific page is visited ☑ Coupon Troubleshooting by itemized coupon on the cart page ☑ WooCommerce Blocks Compatible PRO Features ✅ Auto-Apply Defaults – Default future coupons to auto-apply automatically. ✅ Bulk Updates – Update auto-apply on active coupons in bulk. ✅ Copy Coupons & More – Duplicate coupons, products, posts and pages. ✅ Streamline Email Restrictions – Prompt for customer email in cart when a coupon with email restrictions is applied. ✅ Coupon Defaults – Set default verbiage for new coupons.
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C