← WordPress Vulnerabilities
WordPress security by component

BigBuy Dropshipping Connector for WooCommerce

BigBuy Dropshipping Connector for WooCommerce is a WordPress component with 2 published CVE records in this archive. The latest tracked vulnerability was published Nov 21, 2025; the highest CVE/CNA score is 5.3.

Plugin slug: bigbuy-wc-dropshipping-connector

CVE-2025-12039: BigBuy Dropshipping Connector for WooCommerce: A security weakness

BigBuy Dropshipping Connector for WooCommerce is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation.

PublishedNov 21, 2025
Safe version guidanceSee mitigation notes
Safe version
Nov 21, 2025 CVE-2025-12039
BigBuy Dropshipping Connector for WooCommerce: A security weakness
BigBuy Dropshipping Connector for WooCommerce is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE5.3
NVDPending
Feb 18, 2025 CVE-2024-13538
BigBuy Dropshipping Connector for WooCommerce: A security weakness
BigBuy Dropshipping Connector for WooCommerce is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE5.3
NVDPending