← WordPress Vulnerabilities
WordPress security by component

wModes – Catalog Mode, Product Pricing, Enquiry Forms & Promotions

wModes – Catalog Mode, Product Pricing, Enquiry Forms & Promotions is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Nov 18, 2025; the highest published CVSS base score is 4.3.

Plugin slug: catalog-mode-pricing-enquiry-forms-promotions

CVE-2025-12639: wModes – Catalog Mode, Product Pricing, Enquiry Forms & Promotions: A security weakness

wModes – Catalog Mode, Product Pricing, Enquiry Forms & Promotions is affected by a security weakness. Exploitation requires an authenticated subscriber account. The resulting impact depends on how the affected component exposes the vulnerable operation. The public source does not disclose the vulnerable endpoint, action, parameter or function, so the precise input path remains unknown.

PublishedNov 18, 2025
Safe version guidanceSee mitigation notes
Published vulnerabilities for catalog-mode-pricing-enquiry-forms-promotions
Safe version
Nov 18, 2025 CVE-2025-12639
wModes – Catalog Mode, Product Pricing, Enquiry Forms & Promotions: A security weakness
wModes – Catalog Mode, Product Pricing, Enquiry Forms & Promotions is affected by a security weakness. Exploitation requires an authenticated subscriber account. The resulting impact depends on how the affected component exposes the vulnerable operation. The public source does not disclose the vulnerable endpoint, action, parameter or function, so the precise input path remains unknown.
See mitigation notes
CVE4.3
NVDPending