Addify Custom User Registration Fields for WooCommerce Unrestricted File Upload Vulnerability
Vulnerability
A vulnerability allowing unrestricted upload of files with dangerous types has been identified in the Addify Custom User Registration Fields for WooCommerce plugin, specifically in versions through 2.1.2. This vulnerability allows users to upload a web shell to the web server.
Impact
Exploitation of this vulnerability could lead to the upload of a web shell, allowing for remote code execution on the server.
Added: Nov 6, 2025, 5:49 PM
Updated: Nov 6, 2025, 8:35 PM
Vulnerability Rating
Custom Algorithm
spread
0.0impact
7.5exploitability
6.6remediation
0.0relevance
0.9threat
0.0urgency
2.9incentive
1.7Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
