CVE-2026-25443: Dotstore Fraud Prevention For Woocommerce

High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.

Missing Authorization vulnerability in Dotstore Fraud Prevention For Woocommerce woo-blocker-lite-prevent-fake-orders-and-blacklist-fraud-customers allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Fraud Prevention For Woocommerce: from n/a through <= 2.3.3.

Affected products

  • Dotstore Fraud Prevention For Woocommerce: up to and including 2.3.3

Published 2026-03-19. Last modified 2026-06-17.