Vanquish WooCommerce Orders and Customers Exporter Sensitive Data Exposure Vulnerability

Vulnerability

A vulnerability allowing the exposure of sensitive information has been identified in the Vanquish WooCommerce Orders & Customers Exporter plugin, affecting versions through 5.0. This issue arises from the insertion of sensitive data into sent communications, which could be retrieved by unauthorized users.

Impact

Exploitation of this vulnerability could lead to unauthorized access to sensitive information that is typically restricted from regular users, potentially allowing for further exploitation of other system weaknesses.

Remediation

Users are advised to update to a version of the Vanquish WooCommerce Orders & Customers Exporter plugin that is later than 5.0. For those using Patchstack, a virtual patch is available to mitigate this vulnerability until an official fix can be applied.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
5.2
remediation
0.0
relevance
0.1
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.