THREATOPS
THREAT OPSThreat News › [NVD] CVE-2025-14843 (MEDIUM 5.3) — The Wizit Gateway for WooCommerce plugin for WordPress is vulnerable to Unauthenticated Arbitrary Order Cancellation in all versions up to, and including, 1.3.1. This is due to a lack of authentication and authorization checks in the 'handle_checkout_redirecturl_response' functio

[NVD] CVE-2025-14843 (MEDIUM 5.3) — The Wizit Gateway for WooCommerce plugin for WordPress is vulnerable to Unauthenticated Arbitrary Order Cancellation in all versions up to, and including, 1.3.1. This is due to a lack of authentication and authorization checks in the 'handle_checkout_redirecturl_response' functio

lownvdPublished 2026-01-24

CVE-2025-14843 CVSS: 5.3 MEDIUM Published: 2026-01-24T08:16:06.073

The Wizit Gateway for WooCommerce plugin for WordPress is vulnerable to Unauthenticated Arbitrary Order Cancellation in all versions up to, and including, 1.3.1. This is due to a lack of authentication and authorization checks in the 'handle_checkout_redirecturl_response' function. This makes it possible for unauthenticated attack

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2025-14843