CVE-2025-32689
Unknown Unknown - Not Provided
BaseFortify

Publication date: 2025-09-09

Last updated on: 2026-04-29

Assigner: Patchstack

Description
Improper Validation of Specified Quantity in Input vulnerability in Convers Lab WP SmartPay smartpay.This issue affects WP SmartPay: from n/a through <= 2.8.2.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2025-09-09
Last Modified
2026-04-29
Generated
2026-06-16
AI Q&A
2025-09-09
EPSS Evaluated
2026-06-14
NVD
EUVD
Affected Vendors & Products
Showing 1 associated CPE
Vendor Product Version / Range
themesgrove wp_smartpay *
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-1284 The product receives input that is expected to specify a quantity (such as size or length), but it does not validate or incorrectly validates that the quantity has the required properties.
Attack-Flow Graph
AI Quick Actions
Instant insights powered by AI
Executive Summary

This vulnerability is an Improper Validation of Specified Quantity in Input issue found in ThemesGrove WP SmartPay plugin versions up to 2.7.13. It means the software does not correctly check or restrict the quantity values provided by users, which can lead to unexpected behavior or exploitation.

Impact Analysis

The vulnerability can impact you by allowing an attacker to manipulate the quantity input, potentially causing integrity issues such as unauthorized changes to order quantities or payment processing errors. This could lead to financial discrepancies or abuse of the system.

Chat Assistant
Ask questions about this CVE
Hi! I’m here to help you understand CVE-2025-32689. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70
EPSS Chart