Known vulnerabilities in Vitepos – Point of Sale (POS) for WooCommerce
Fast, modern WooCommerce POS plugin for managing sales, outlets, and cashiers directly in WordPress.
8Reported vulnerabilities
8.8Highest CVSS score
3.5.1Latest version
1,000+Active installs
What to do now
Update Vitepos – Point of Sale (POS) for WooCommerce to 3.4.3 or later.
8 of these have a fixed version available. Updating resolves them.
Reported vulnerabilities
| CVE | Severity | Exploit probability |
Affected versions | Fixed in | Published |
|---|---|---|---|---|---|
| CVE-2025-13156 | High | 0.7% | 3.3.0 and earlier | 3.3.1 |
November 20, 2025 |
| CVE-2026-8157 | High | 0.4% | Before 3.4.2 | 3.4.2 |
June 1, 2026 |
| CVE-2026-57385 | Medium | 0.4% | 3.4.2 and earlier | 3.4.3 |
July 7, 2026 |
| CVE-2026-54841 | Medium | 0.4% | 3.4.2 and earlier | 3.4.3 |
June 18, 2026 |
| CVE-2025-22277 | Medium | 0.5% | 3.1.4 and earlier | 3.1.5 |
March 31, 2025 |
| CVE-2025-39535 | Medium | 0.5% | 3.1.7 and earlier | 3.1.8 |
April 17, 2025 |
| CVE-2025-26750 | Medium | 0.3% | 3.1.3 and earlier | 3.1.4 |
February 14, 2025 |
| CVE-2024-33574 | Medium | 0.4% | 3.0.1 and earlier | 3.0.2 |
April 25, 2024 |