CVE-2013-0724: Wpshopstyling Wp-Ecommerce-Shop-Styling

High severity, CVSS 7.5. EPSS: 2.7% chance of exploitation in the next 30 days.

PHP remote file inclusion vulnerability in includes/generate-pdf.php in the WP ecommerce Shop Styling plugin for WordPress before 1.8 allows remote attackers to execute arbitrary PHP code via a URL in the dompdf parameter.

Affected products

  • Wpshopstyling Wp-Ecommerce-Shop-Styling: up to and including 1.7; version 1.0 only; version 1.2 only; version 1.3 only; version 1.4 only; version 1.5 only; …

Published 2014-05-27. Last modified 2026-06-16.