Saphali has a narrow vulnerability footprint centered on e-commerce extensions for the WooCommerce platform. The observed weakness class involves cross-site request forgery (CSRF) issues, which are common in web-application plugins where state-modifying operations lack proper request origin validation. Current counts, exploitation activity, and severity breakdowns are shown in the live-stats panel alongside this summary.
The number and severity of CVEs published that impact products developed by Saphali over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-25788HIGH Cross-Site Request Forgery (CSRF) vulnerability in Saphali Saphali Woocommerce Lite plugin <= 1.8.13 versions. | Oct 4, 2023 | 8.8 | 24 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Saphali.
Media articles that mention a CVE ID that affects a product developed by Saphali — matched by CVE ID, not by vendor name.