Known vulnerabilities in CTT Expresso para WooCommerce
Allows integrating your WooCommerce website with CTTExpresso platform via their API.
3Reported vulnerabilities
7.5Highest CVSS score
3.2.13Latest version
90+Active installs
What to do now
Update CTT Expresso para WooCommerce to 3.2.13 or later.
3 of these have a fixed version available. Updating resolves them.
This plugin has not been updated in over two years. New vulnerabilities may never be fixed. Consider an alternative.
Reported vulnerabilities
| CVE | Severity | Exploit probability |
Affected versions | Fixed in | Published |
|---|---|---|---|---|---|
| CVE-2024-6478 | Medium | 0.3% | Before 3.2.13 | 3.2.13 |
May 15, 2025 |
| CVE-2024-6687 | High | 0.4% | Before 3.2.13 | 3.2.13 |
August 1, 2024 |
| CVE-2022-47589 | Medium | 0.4% | 3.2.11 and earlier | 3.2.12 |
January 20, 2023 |