SecAlerts
w

wp swings

Security Risk Profile

38
/100
low

Security Risk Score

Comprehensive risk assessment based on 16 vulnerabilities, EPSS scores, exploitation status, and remediation availability.

📅 Data spans from March 21, 2024 to present

16
Total CVEs
7
Critical+High
0
Exploited
4
Unpatched

Threat Assessment

Avg CVSS
6.7
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
4
Critical/High
Risk Level
38/100
low
🆕 1Fresh (<7d)📈 2 in Last 30 Days

Severity Distribution

Critical
2
High
5
Medium
9
Low
0

Exploit Likelihood

>50% chance
0
20-50%
0
5-20%
0
<5%
5

Age Distribution

Common Weaknesses (CWE)

1
XSS
3
2
CSRF
2
3
Malicious File Upload
1

Most Affected Products

1. WP Swings Wallet System for WooCommerce6
2. WP Swings Points and Rewards for WooCommerce3
3. WP Swings Membership For WooCommerce2
4. WP Swings Event Tickets Manager for WooCommerce1
5. WP Swings Gift Cards For WooCommerce Pro1

Recent Vulnerabilities

See more →
CVE-2026-94245
CVSS 6.5medium

Wallet System for WooCommerce 2.0.0 - 2.7.10 - Subscriber+ Arbitrary Wallet Balance Theft via IDOR

Oct 8, 2026🔧 No Patch
CVE-2026-93510
CVSS 4.3EPSS 0%medium

Points and Rewards for WooCommerce < 2.10.4 - Subscriber+ Arbitrary Points and Wallet Balance Manipulation via assign_claim_points

Sep 23, 2026🔧 No Patch
CVE-2026-57400
CVSS 6.5medium

WordPress Event Tickets Manager for WooCommerce plugin <= 1.5.5 - Broken Access Control vulnerability

Jul 13, 2026🔧 No Patch
CVE-2026-42654
CVSS 7.1high

WordPress Wallet System for WooCommerce plugin <= 2.7.5 - Broken Authentication vulnerability

Jun 2, 2026🔧 No Patch
CVE-2026-45444
CVSS 10.0critical

WordPress Gift Cards For WooCommerce Pro plugin <= 4.2.6 - Arbitrary File Upload vulnerability

May 20, 2026🔧 No Patch
CVE-2026-24372
CVSS 7.5high

WordPress Subscriptions for WooCommerce plugin <= 1.8.10 - Bypass Vulnerability vulnerability

Mar 25, 2026🔧 No Patch
CVE-2026-24375
CVSS 5.3EPSS 0%medium

WordPress Ultimate Gift Cards For WooCommerce plugin <= 3.2.4 - Broken Access Control vulnerability

Feb 19, 2026🔧 No Patch
CVE-2025-59565
CVSS 6.5medium

WordPress Upsell Order Bump Offer for WooCommerce Plugin <= 3.0.7 - Cross Site Scripting (XSS) Vulnerability

Sep 22, 2025
CVE-2025-54692
CVSS 7.5high

WordPress Membership For WooCommerce Plugin <= 2.9.0 - Broken Access Control Vulnerability

Aug 14, 2025
CVE-2025-54041
CVSS 4.3medium

WordPress Wallet System for WooCommerce plugin <= 2.6.7 - Cross Site Request Forgery (CSRF) Vulnerability

Jul 16, 2025

Monitor wp swings in Real-Time

Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.

Powered bySecAlerts

Monitor Your Software Stack in Real-Time

Get instant alerts when vulnerabilities are discovered in your software stack. Stay ahead of security threats with SecAlerts.

© 2026 SecAlerts Pty Ltd. All rights reserved.

wp swings Security Vulnerabilities & Risk Score | 16 CVEs | SecAlerts - SecAlerts