CVE-2025-54030: WordPress WooCommerce Google Sheet Connector plugin <= 1.3.20 - Cross Site Request Forgery (CSRF) Vulnerability
Cross-Site Request Forgery (CSRF) vulnerability in GSheetConnector by WesternDeal WooCommerce Google Sheet Connector allows Cross Site Request Forgery. This issue affects WooCommerce Google Sheet Connector: from n/a through 1.3.20.
Other sources
Cross-Site Request Forgery (CSRF) vulnerability in WesternDeal WooCommerce Google Sheet Connector wc-gsheetconnector allows Cross Site Request Forgery.This issue affects WooCommerce Google Sheet Connector: from n/a through <= 1.3.20.
— MITRE
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-54030?
CVE-2025-54030 is classified as a Cross-Site Request Forgery (CSRF) vulnerability.
How do I fix CVE-2025-54030?
To mitigate CVE-2025-54030, update the WooCommerce Google Sheet Connector to version 1.3.21 or later.
What versions are affected by CVE-2025-54030?
CVE-2025-54030 affects versions of the WooCommerce Google Sheet Connector from n/a up to and including 1.3.20.
Who is the vendor for CVE-2025-54030?
The vendor for CVE-2025-54030 is WesternDeal, associated with the WooCommerce Google Sheet Connector.
What type of vulnerability is CVE-2025-54030?
CVE-2025-54030 is a Cross-Site Request Forgery (CSRF) vulnerability.