CVE-2025-49510: WordPress Min Max Step Quantity Limits Manager for WooCommerce plugin <= 5.1.0 - Cross Site Request Forgery (CSRF) vulnerability
Cross-Site Request Forgery (CSRF) vulnerability in WPFactory Min Max Step Quantity Limits Manager for WooCommerce allows Cross Site Request Forgery.This issue affects Min Max Step Quantity Limits Manager for WooCommerce: from n/a through 5.1.0.
Other sources
Cross-Site Request Forgery (CSRF) vulnerability in WPFactory Min Max Step Quantity Limits Manager for WooCommerce product-quantity-for-woocommerce allows Cross Site Request Forgery.This issue affects Min Max Step Quantity Limits Manager for WooCommerce: from n/a through <= 5.1.0.
— MITRE
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-49510?
CVE-2025-49510 is classified as a Cross-Site Request Forgery (CSRF) vulnerability.
How do I fix CVE-2025-49510?
To fix CVE-2025-49510, update the WPFactory Min Max Step Quantity Limits Manager for WooCommerce plugin to version 5.1.1 or later.
Which versions are affected by CVE-2025-49510?
CVE-2025-49510 affects versions of WPFactory Min Max Step Quantity Limits Manager for WooCommerce up to and including 5.1.0.
What type of vulnerability is CVE-2025-49510?
CVE-2025-49510 is a Cross-Site Request Forgery (CSRF) vulnerability.
Is CVE-2025-49510 specific to any platforms?
CVE-2025-49510 specifically affects the WPFactory and WordPress versions of the Min Max Step Quantity Limits Manager for WooCommerce plugin.