What is CVE-2025-15662?
CVE-2025-15662 is a Server-Side Request Forgery (SSRF) vulnerability in the Printcart Web to Print Product Designer for WooCommerce WordPress plugin before version 2.5.3. It allows unauthenticated attackers to read arbitrary local files on the server by exploiting insufficient restriction of user-supplied URLs and lack of proper authorization checks. Immediate update to the latest version is required.
Azərbaycanca: CVE-2025-15662, Printcart Web to Print Product Designer for WooCommerce WordPress plugin-in 2.5.3 versiyasından əvvəlki versiyalarına təsir edən Server-Side Request Forgery (SSRF) zəifliyidir. Bu zəiflik autentifikasiya olunmamış hücumçulara server tərəfində ixtiyari lokal faylları oxumağa imkan verir. Plugin-i dərhal ən son versiyaya yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-918
FAQ2
Which plugin is affected by CVE-2025-15662?
The Printcart Web to Print Product Designer for WooCommerce WordPress plugin.
What does the CVE-2025-15662 SSRF vulnerability allow unauthenticated attackers to do?
It allows them to read arbitrary local files on the server.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.