cvemon logocvemon logo

Activity

Trending

CVEs

CVE-2025-27012

Published Feb 22, 2025

Last updated 5 days ago

  1. Overview

  2. Weaknesses

  3. Social media

  4. References

Overview

Description
Cross-Site Request Forgery (CSRF) vulnerability in a1post A1POST.BG Shipping for Woo a1post-bg-shipping-for-woocommerce allows Privilege Escalation.This issue affects A1POST.BG Shipping for Woo: from n/a through <= 1.5.
Source
audit@patchstack.com
NVD status
Deferred

Weaknesses

audit@patchstack.com
CWE-352

Social media

Hype score
Not currently trending
  1. ๐Ÿšจ CVE-2025-27012 ๐Ÿ”ด HIGH (8.8) ๐Ÿข a1post - https://t.co/zHIFuTwld1 Shipping for Woo ๐Ÿ—๏ธ Unknown Version ๐Ÿ”— https://t.co/AGl1kf4lt2 #CyberCron #VulnAlert https://t.co/ZPJBTxRHsW

    @cybercronai

    22 Feb 2025

    7 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. CVE-2025-27012 Cross-Site Request Forgery (CSRF) vulnerability in a1post https://t.co/gPhE4eN5Hv Shipping for Woo allows Privilege Escalation. This issue affects https://t.co/gPhE4eN5Hv Shipping for Woo: from โ€ฆ https://t.co/SdH1ju198x

    @CVEnew

    22 Feb 2025

    587 Impressions

    1 Retweet

    2 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

References

Sources include official advisories and independent security research.

  • https://nvd.nist.gov/vuln/detail/CVE-2025-27012
  • https://patchstack.com/database/Wordpress/Plugin/a1post-bg-shipping-for-woocommerce/vulnerability/wordpress-a1post-bg-shipping-for-woo-plugin-1-5-1-csrf-to-privilege-escalation-vulnerability?_s_id=cve
TRY INTRUDER
Intruder logo

ยฉ 2026 Intruder Systems Ltd.

AboutPrivacySitemapFeeds