CVE-2025-15635: Zaytech Smart Online Order For Clover

Medium severity, CVSS 4.3. EPSS: 0.1% chance of exploitation in the next 30 days.

Cross-Site Request Forgery (CSRF) vulnerability in ZAYTECH Smart Online Order for Clover clover-online-orders allows Cross Site Request Forgery.This issue affects Smart Online Order for Clover: from n/a through <= 1.6.0.

Affected products

  • Zaytech Smart Online Order For Clover: up to and including 1.6.0

Published 2026-04-15. Last modified 2026-10-07.