← WordPress Vulnerabilities
WordPress security by component

Splitit

Splitit (splitit-installment-payments) is a WordPress plugin with 1 published CVE record in this archive. The latest tracked vulnerability was published May 21, 2025; the highest published CVSS base score is 5.4.

Plugin slug: splitit-installment-payments

CVE-2025-4105: Splitit: A security weakness

Splitit is affected by a security weakness. Exploitation requires an authenticated subscriber account. The resulting impact depends on how the affected component exposes the vulnerable operation.

PublishedMay 21, 2025
Safe version guidanceSee mitigation notes
Published vulnerabilities for splitit-installment-payments
Safe version
May 21, 2025 CVE-2025-4105
Splitit: A security weakness
Splitit is affected by a security weakness. Exploitation requires an authenticated subscriber account. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE5.4
NVDPending