CVE-2025-60243 | Holest Engineering Selling Commander for WooCommerce Plugin up to 1.2.46 on WordPress privileges assignment
A vulnerability was found in Holest Engineering Selling Commander for WooCommerce Plugin up to 1.2.46 on WordPress. It has been rated as problematic. This issue affects some unknown processing. Performing manipulation results in incorrect privilege assignment.
This vulnerability is identified as CVE-2025-60243. The attack can only be performed from the local network. There is not any exploit available.