
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2025-12075 is a Missing Authorization vulnerability in the Order Splitter for WooCommerce plugin for WordPress that allows authenticated attackers to access other users' order data without proper authorization. The flaw affects all versions of the plugin up to and including 5.3.5. It was published on February 18, 2026, and carries a CVSS v3.1 base score of 4.3 (Medium) (Red Hat CVE).
The root cause is a missing capability check (CWE-862) on the wos_troubleshooting AJAX endpoint exposed by the plugin. Because no authorization check is enforced on this endpoint, any authenticated WordPress user — including those with only Subscriber-level access — can invoke it and retrieve order information belonging to other users. The attack vector is network-based, requires low privileges, no user interaction, and low attack complexity (Red Hat CVE).
Successful exploitation results in unauthorized disclosure of other customers' order data, including potentially sensitive personal and transactional information stored in WooCommerce orders. The impact is limited to confidentiality (no integrity or availability impact), but on e-commerce sites this could expose customer names, addresses, purchase histories, and order details to any registered user (Red Hat CVE).
wos_troubleshooting AJAX action, typically accessible via wp-admin/admin-ajax.php?action=wos_troubleshooting.wp-admin/admin-ajax.php?action=wos_troubleshooting from low-privilege user accounts or from accounts that would not normally access order management functions.wos_troubleshooting AJAX action, especially in high frequency or across multiple order IDs.Site administrators should update the Order Splitter for WooCommerce plugin to a version above 5.3.5 that includes a proper capability check on the wos_troubleshooting AJAX endpoint. Until a patched version is available or applied, consider deactivating the plugin or restricting AJAX endpoint access via a web application firewall (WAF) rule blocking unauthenticated or low-privilege access to admin-ajax.php?action=wos_troubleshooting. Limiting user registration on the WordPress site reduces the attack surface by preventing untrusted users from obtaining Subscriber-level accounts (Red Hat CVE).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."