CVE · Medium

CVE-2025-53255 — HurryTimer – An Scarcity and Urgency Countdown Timer for WordPress & WooCommerce [hurrytimer] < 2.14.0

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2025-53255 HurryTimer – An Scarcity and Urgency Countdown Timer for WordPress & WooCommerce [hurrytimer] < 2.14.0 Missing Authorization Medium 5.3 < 2.14.0 2.14.0 2025-06-27

CVE-2025-53255

A critical security flaw exists within the HurryTimer plugin, which integrates with WordPress and WooCommerce, allowing malicious users without authentication to execute an illicit operation due to a lack of capability verification in all versions prior to 2.13.1. This oversight enables unverified individuals to bypass normal access controls.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.