CVE-2026-42748: Wpify Woo Czech

Critical severity, CVSS 9.9. EPSS: 0.5% chance of exploitation in the next 30 days.

Unrestricted Upload of File with Dangerous Type vulnerability in WPify WPify Woo Czech wpify-woo allows Upload a Web Shell to a Web Server.This issue affects WPify Woo Czech: from n/a through <= 5.4.1.

Affected products

  • Wpify Wpify Woo Czech: up to and including 5.4.1

Published 2026-05-27. Last modified 2026-06-17.