WordPress security by component
Admin and Customer Messages After Order for WooCommerce: OrderConvo
Plugin description
Admin and Customer Messages After Order for WooCommerce: OrderConvo is a WordPress component with 3 published CVE records in this archive. The latest tracked vulnerability was published Nov 25, 2025; the highest CVE/CNA score is 10.
Plugin slug:
admin-and-client-message-after-order-for-woocommerceLatest vulnerability
CVE-2025-13452: Admin and Customer Messages After Order for WooCommerce: OrderConvo: A security weakness
Admin and Customer Messages After Order for WooCommerce: OrderConvo is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation.
| Safe version |
|
||
|---|---|---|---|
| Nov 25, 2025 |
CVE-2025-13452
Admin and Customer Messages After Order for WooCommerce: OrderConvo: A security weakness
Admin and Customer Messages After Order for WooCommerce: OrderConvo is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE4.3
NVDPending
|
| Nov 25, 2025 |
CVE-2025-13389
Admin and Customer Messages After Order for WooCommerce: OrderConvo: A security weakness
Admin and Customer Messages After Order for WooCommerce: OrderConvo is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE5.3
NVDPending
|
| Apr 29, 2024 |
CVE-2024-33566
OrderConvo: A security weakness
OrderConvo is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE10.0
NVDPending
|