First published: Tue Apr 01 2025(Updated: )
Deserialization of Untrusted Data vulnerability in silverplugins217 Multiple Shipping And Billing Address For Woocommerce allows Object Injection. This issue affects Multiple Shipping And Billing Address For Woocommerce: from n/a through 1.5.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
WordPress Multiple Shipping And Billing Address For WooCommerce | <=1.5 | |
WordPress Multiple Shipping And Billing Address For WooCommerce | <=1.5 |
Update the WordPress Multiple Shipping And Billing Address For Woocommerce plugin to the latest available version (at least 1.6).
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-31087 is considered a critical vulnerability due to its ability to allow object injection through deserialization of untrusted data.
To fix CVE-2025-31087, update the Multiple Shipping And Billing Address For WooCommerce plugin to version 1.6 or later.
CVE-2025-31087 affects all versions of the Multiple Shipping And Billing Address For WooCommerce plugin from n/a through 1.5.
CVE-2025-31087 is a deserialization of untrusted data vulnerability that can lead to object injection.
Users of the Multiple Shipping And Billing Address For WooCommerce plugin prior to version 1.6 are impacted by CVE-2025-31087.