CVE-2025-6439
WooCommerce Designer Pro Arbitrary File Deletion Vulnerability
Halo Surface Signal: 4 out of 5 — likely to be public-facing.
A vulnerability exists in a WordPress plugin that could allow unauthenticated attackers to delete arbitrary files on the server. This could lead to data loss or site unavailability. Confirm if the affected plugin is in use.