CVE-2025-10162: WordPress OrderConvo < 14 - Path Traversal

HoneyLabs honeypots recorded 1 probes matching CVE-2025-10162 from 1 distinct source IP addresses in the last 7 days. Severity is rated high.

Request paths that identify it

  • /wp-json/wooconvo/v1/download-file?order_id=1&filename=../../../../wp-config.php

Addresses probing it

Source IPProbesNetworkCountry
93.123.109.2141Techoff Srv LimitedBulgaria

Networks it comes from

ASNOrganisationProbesSource IPs
AS48090Techoff Srv Limited11

Captured requests

  • /wp-json/wooconvo/v1/download-file?order_id=1&filename=../../../../wp-config.php

CVE report

CVE report

Open a specific CVE from the CVE tracker.