Known vulnerabilities in File Uploads Addon for WooCommerce
Let customers upload files directly on your WooCommerce product page — no more chasing emails for artwork, logos, prescriptions, or documents.
2Reported vulnerabilities
7.5Highest CVSS score
1.7.4Latest version
5,000+Active installs
What to do now
Update File Uploads Addon for WooCommerce to 1.7.4 or later.
2 of these have a fixed version available. Updating resolves them.
Reported vulnerabilities
| CVE | Severity | Exploit probability |
Affected versions | Fixed in | Published |
|---|---|---|---|---|---|
| CVE-2024-13622 | High | 0.5% | 0 to 1.7.1 (inclusive) | 1.7.2 |
February 18, 2025 |
| CVE-2026-24625 | Medium | 0.2% | 1.7.3 and earlier | 1.7.4 |
January 10, 2026 |