WooCommerce Anti-Fraud
WooCommerce Anti-Fraud has 2 disclosed vulnerabilities in the WordSec catalog, reported between 2020 and 2026; all 2 are fixed as of September 2026. Their average CVSS score is 5.3, and the most serious one scores 5.4 out of 10.
The most common weakness is Authorization Bypass Through User-Controlled Key, behind 1 of the records (50%). Other recurring categories include Missing Authorization.
Every one of the 2 issues recorded for WooCommerce Anti-Fraud has a vendor fix available, so running the current release closes all known holes.
2 independent researchers contributed these findings, one record each.
Highest severity on recordCVSS 5.4
WooCommerce Anti-Fraud <= 3.2 - Insecure Direct Object Reference
Read the full analysisVulnerability Records
2 records
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C