WP Vulnerability WatchVulnerability data as of September 7, 2026

Known vulnerabilities in We’re Open!

Opening hours for your business, a joy to manage and highly customizable. Conditional excerpts; conditional/replacement text; Structured Data for SEO.

6Reported vulnerabilities
5.5Highest CVSS score
2.6Latest version
5,000+Active installs

What to do now

Update We’re Open! to 1.47 or later. 5 of these have a fixed version available. Updating resolves them.

Plugin last updated: January 4, 2026 / Tested up to WordPress: 6.9.7 / View on wordpress.org

Reported vulnerabilities

Ordered by how urgently they need attention — whether a vulnerability is actually being exploited, and how likely exploitation is, rather than CVSS severity alone.

CVESeverityExploit probability
next 30 days
Affected versionsFixed inPublished
CVE-2022-4752 Medium 5.4 0.5% 2.3.0 and earlier February 21, 2023
CVE-2022-3139 Medium 4.8 0.5% Before 1.42 1.42 October 17, 2022
WF-0004db27-9ea6-4387-ab1d-b95558784ed9 Medium 5.5 1.37 and earlier 1.38 September 9, 2022
CVE-2023-25964 Medium 4.4 0.4% 1.46 and earlier 1.47 February 27, 2023
CVE-2023-25067 Medium 4.3 0.5% 1.45 and earlier 1.46 February 2, 2023
WF-82f4ad21-bc55-4daf-bc46-90969dcbabdd Medium 4.3 1.44 and earlier 1.45 February 1, 2023

Sources: vulnerability records from NVD, exploitation from CISA KEV, exploit probability from EPSS. Affected versions come from CPE ranges or from the reporting CNA.