CVE-2025-47608: SONALSINHA21 Recover Abandoned Cart For Woocommerce

Critical severity, CVSS 9.3. EPSS: 1.1% chance of exploitation in the next 30 days.

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in sonalsinha21 Recover abandoned cart for WooCommerce recover-wc-abandoned-cart allows SQL Injection.This issue affects Recover abandoned cart for WooCommerce: from n/a through <= 2.5.

Affected products

  • SONALSINHA21 Recover Abandoned Cart For Woocommerce: up to and including 2.5

Published 2025-06-09. Last modified 2026-06-17.