Known vulnerabilities in WCPOS – Point of Sale (POS) plugin for WooCommerce
Turn any device into a register for your WooCommerce store — same catalog, stock and prices, online or off.
5Reported vulnerabilities
7.2Highest CVSS score
1.9.16Latest version
5,000+Active installs
What to do now
Update WCPOS – Point of Sale (POS) plugin for WooCommerce to 1.9.15 or later.
5 of these have a fixed version available. Updating resolves them.
Reported vulnerabilities
| CVE | Severity | Exploit probability |
Affected versions | Fixed in | Published |
|---|---|---|---|---|---|
| CVE-2026-17581 | High | 0.7% | 0 to 1.9.14 (inclusive) | 1.9.15 |
August 16, 2026 |
| CVE-2026-16078 | Medium | 0.6% | 0 to 1.9.8 (inclusive) | 1.9.9 |
July 23, 2026 |
| CVE-2026-52711 | Medium | 0.2% | 1.8.14 and earlier | 1.9.0 |
June 15, 2026 |
| CVE-2025-48117 | Medium | 0.3% | 1.7.8 and earlier | 1.7.9 |
May 16, 2025 |
| CVE-2024-2384 | Medium | 0.3% | 1.4.11 and earlier | 1.4.12 |
March 19, 2024 |