CVE-2025-47577: Critical Arbitrary File Upload in TI WooCommerce Wishlist Puts 100,000+ Stores at Risk (CVSS 10.0)
A CVSS 10.0 arbitrary file upload flaw in TI WooCommerce Wishlist let unauthenticated attackers upload PHP files and execute code on vulnerable WordPress stores. Here's how the bug worked, who is at risk, and exactly…
Read Article