WP Vulnerability WatchVulnerability data as of September 7, 2026

Known vulnerabilities in Flexible PDF Invoices for WooCommerce & WordPress

WooCommerce PDF invoices made simple. EU VAT validation, reverse charge invoice, proforma invoices, MOSS / OSS support, invoices in bulk and more.

1Reported vulnerabilities
7.1Highest CVSS score
6.2.24Latest version
6,000+Active installs

What to do now

Update Flexible PDF Invoices for WooCommerce & WordPress to 6.0.14 or later. 1 of these have a fixed version available. Updating resolves them.

Plugin last updated: August 5, 2026 / Tested up to WordPress: 7.0.4 / View on wordpress.org

Reported vulnerabilities

Ordered by how urgently they need attention — whether a vulnerability is actually being exploited, and how likely exploitation is, rather than CVSS severity alone.

CVESeverityExploit probability
next 30 days
Affected versionsFixed inPublished
CVE-2025-57977 High 7.1 0.2% 0 to 6.0.13 (inclusive) 6.0.14 September 22, 2025

Sources: vulnerability records from NVD, exploitation from CISA KEV, exploit probability from EPSS. Affected versions come from CPE ranges or from the reporting CNA.