CVE-2025-59578: Wpdesk Shopmagic

Medium severity, CVSS 5.8. EPSS: 0.3% chance of exploitation in the next 30 days.

Insertion of Sensitive Information Into Sent Data vulnerability in wpdesk ShopMagic shopmagic-for-woocommerce allows Retrieve Embedded Sensitive Data.This issue affects ShopMagic: from n/a through <= 4.5.6.

Affected products

  • Wpdesk Shopmagic: up to and including 4.5.6

Published 2025-10-22. Last modified 2026-10-08.