Known vulnerabilities in CURCY – Multi Currency for WooCommerce – Smoothly on WooCommerce 9.x
Show multi-currency pricing and dual-currency display, accept multi-currency payment, support IP detection, custom/global rate, fixed price and more
7Reported vulnerabilities
7.3Highest CVSS score
2.2.16Latest version
20,000+Active installs
What to do now
Update CURCY – Multi Currency for WooCommerce – Smoothly on WooCommerce 9.x to 2.2.15 or later.
7 of these have a fixed version available. Updating resolves them.
Reported vulnerabilities
| CVE | Severity | Exploit probability |
Affected versions | Fixed in | Published |
|---|---|---|---|---|---|
| CVE-2024-13487 | High | 0.7% | 0 to 2.2.5 (inclusive) | 2.2.6 |
February 6, 2025 |
| CVE-2023-50831 | Medium | 0.5% | 2.2.0.1 and earlier | 2.2.1 |
December 19, 2023 |
| CVE-2024-49283 | Medium | 0.3% | 2.2.3 and earlier | 2.2.4 |
October 15, 2024 |
| WF-7870badf-a1c8-4a47-adac-d6535ab81d79 | Medium | — | 2.1.17 and earlier | 2.1.18 |
May 31, 2022 |
| CVE-2026-11778 | Medium | 0.4% | 0 to 2.2.14 (inclusive) | 2.2.15 |
July 3, 2026 |
| CVE-2022-46796 | Medium | 0.6% | 2.1.25 and earlier | 2.1.26 |
February 6, 2023 |
| CVE-2021-4376 | Medium | 0.6% | 2.1.17 and earlier | 2.1.18 |
June 7, 2023 |