Woocommerce CSV importer
Woocommerce CSV importer has one disclosed vulnerability in the WordSec catalog, all reported in 2017; it is fixed as of September 2026. Their average CVSS score is 6.4, and the most serious one scores 6.4 out of 10.
The most common weakness is External Control Of File Name Or Path, behind 1 of the records (100%).
The one issue recorded for Woocommerce CSV importer has a vendor fix available, so running the current release closes it.
All of these findings were reported by Lenon Leite.
Highest severity on recordCVSS 6.4
Woocommerce CSV importer <= 3.3.6 - Arbitrary File Deletion
Read the full analysisVulnerability Records
1 records
Showing 1–1 of 1 reports
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C