Filtered by vendor Wpfactory
Subscriptions
Filtered by product Eu\/uk Vat Manager
Subscriptions
Total
1 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2024-9189 | 1 Wpfactory | 2 Eu\/uk Vat Manager, Eu\/uk Vat Manager For Woocommerce | 2024-10-03 | 5.3 Medium |
The EU/UK VAT Manager for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the alg_wc_eu_vat_exempt_vat_from_admin() function in all versions up to, and including, 2.12.12. This makes it possible for unauthenticated attackers to update the VAT status for any order. |
Page 1 of 1.