{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-04-18T07:33:25.964","vulnerabilities":[{"cve":{"id":"CVE-2025-32576","sourceIdentifier":"audit@patchstack.com","published":"2025-04-09T17:15:46.643","lastModified":"2026-04-15T00:35:42.020","vulnStatus":"Deferred","cveTags":[],"descriptions":[{"lang":"en","value":"Cross-Site Request Forgery (CSRF) vulnerability in Agence web Eoxia - Montpellier WP shop wpshop allows Upload a Web Shell to a Web Server.This issue affects WP shop: from n/a through <= 2.6.1."},{"lang":"es","value":"Vulnerabilidad de Cross-Site Request Forgery (CSRF) en Agence web Eoxia - Montpellier WP shop permite subir un shell web a un servidor web. Este problema afecta a WP Shop desde la versión n/d hasta la 2.6.0."}],"metrics":{},"weaknesses":[{"source":"audit@patchstack.com","type":"Secondary","description":[{"lang":"en","value":"CWE-352"}]}],"references":[{"url":"https://patchstack.com/database/Wordpress/Plugin/wpshop/vulnerability/wordpress-wp-shop-plugin-2-6-0-csrf-to-arbitrary-file-upload-vulnerability?_s_id=cve","source":"audit@patchstack.com"}]}}]}