Description

Cross-Site Request Forgery (CSRF) vulnerability in YITHEMES YITH PayPal Express Checkout for WooCommerce allows Cross Site Request Forgery. This issue affects YITH PayPal Express Checkout for WooCommerce: from n/a through 1.49.0.

INFO

Published Date :

2025-06-17T15:01:43.752Z

Last Modified :

2026-04-28T16:12:51.827Z

Source :

Patchstack
AFFECTED PRODUCTS

The following products are affected by CVE-2025-48111 vulnerability.

Vendors Products
Wordpress
  • Wordpress
Yithemes
  • Yith Paypal Express Checkout For Woocommerce

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact