Known vulnerabilities in Place Order Without Payment for WooCommerce
Allow customers to place orders without payment. Ideal for pay-later, B2B, wholesale, and quote-based checkout workflows.
1Reported vulnerabilities
9.8Highest CVSS score
2.7.7Latest version
3,000+Active installs
What to do now
Update Place Order Without Payment for WooCommerce to 2.6.8 or later.
1 of these have a fixed version available. Updating resolves them.
Reported vulnerabilities
| CVE | Severity | Exploit probability |
Affected versions | Fixed in | Published |
|---|---|---|---|---|---|
| CVE-2025-26933 | Critical | 0.5% | 2.6.7 and earlier | 2.6.8 |
February 23, 2025 |