CVE-2025-60192: WordPress Premmerce Wholesale Pricing for WooCommerce plugin <= 1.1.10 - Local File Inclusion vulnerability
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Premmerce Premmerce Wholesale Pricing for WooCommerce premmerce-woocommerce-wholesale-pricing allows PHP Local File Inclusion.This issue affects Premmerce Wholesale Pricing for WooCommerce: from n/a through <= 1.1.10.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-60192?
CVE-2025-60192 has a medium severity rating due to the potential for local file inclusion vulnerabilities in the Premmerce Wholesale Pricing for WooCommerce plugin.
How do I fix CVE-2025-60192?
To fix CVE-2025-60192, update the Premmerce Wholesale Pricing for WooCommerce plugin to a version greater than 1.1.10.
What software is affected by CVE-2025-60192?
CVE-2025-60192 affects the Premmerce Wholesale Pricing for WooCommerce plugin version 1.1.10 and earlier.
What type of vulnerability is CVE-2025-60192?
CVE-2025-60192 is classified as a local file inclusion vulnerability resulting from improper control of filenames in PHP.
Who is the vendor associated with CVE-2025-60192?
The vendor associated with CVE-2025-60192 is Premmerce, which develops the Wholesale Pricing for WooCommerce plugin.