Known vulnerabilities in Brevo for WooCommerce
All-in-one WooCommerce email marketing, automation, SMS, and CRM by Brevo. Grow your store with powerful marketing tools.
3Reported vulnerabilities
7.2Highest CVSS score
4.0.58Latest version
30,000+Active installs
What to do now
Update Brevo for WooCommerce to 4.0.50 or later.
3 of these have a fixed version available. Updating resolves them.
Reported vulnerabilities
| CVE | Severity | Exploit probability |
Affected versions | Fixed in | Published |
|---|---|---|---|---|---|
| CVE-2025-14436 | High | 0.3% | 0 to 4.0.49 (inclusive) | 4.0.50 |
January 8, 2026 |
| CVE-2024-32807 | High | 0.6% | 4.0.17 and earlier | 4.0.18 |
April 22, 2024 |
| CVE-2025-66128 | Medium | 0.2% | 4.0.49 and earlier | 4.0.50 |
December 14, 2025 |