CVE-2025-39362: WordPress Mollie Payments for WooCommerce plugin <= 8.0.2 - Insecure Direct Object References (IDOR) vulnerability
Missing Authorization vulnerability in Mollie Mollie Payments for WooCommerce mollie-payments-for-woocommerce.This issue affects Mollie Payments for WooCommerce: from n/a through <= 8.0.2.
Other sources
Missing Authorization vulnerability in Mollie Mollie Payments for WooCommerce.This issue affects Mollie Payments for WooCommerce: from n/a through 8.0.2.
— NVD
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-39362?
The severity of CVE-2025-39362 is classified as a missing authorization vulnerability.
How do I fix CVE-2025-39362?
To fix CVE-2025-39362, update the Mollie Payments for WooCommerce plugin to version 8.0.3 or later.
What versions of Mollie Payments for WooCommerce are affected by CVE-2025-39362?
CVE-2025-39362 affects Mollie Payments for WooCommerce versions from n/a up to and including 8.0.2.
What type of vulnerability is CVE-2025-39362?
CVE-2025-39362 is a missing authorization vulnerability.
Who is the vendor of the affected software in CVE-2025-39362?
The vendor of the affected software in CVE-2025-39362 is Mollie.