CVE-2025-64379: Booster For Woocommerce

Medium severity, CVSS 4.3. EPSS: 0.2% chance of exploitation in the next 30 days.

Missing Authorization vulnerability in Pluggabl Booster for WooCommerce woocommerce-jetpack allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Booster for WooCommerce: from n/a through <= 7.4.0.

Affected products

  • Booster Booster For Woocommerce: before 7.5.0 (fixed in 7.5.0)

Published 2025-11-13. Last modified 2026-10-07.