The WooCommerce WordPress plugin before 6.2.1 does not have proper authorisation check when deleting reviews, which could allow any authenticated users, such as subscriber to delete arbitrary comment
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-15830 | The WooCommerce WordPress plugin before 6.2.1 does not have proper authorisation check when deleting reviews, which could allow any authenticated users, such as subscriber to delete arbitrary comment |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 13 Nov 2024 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2025-06-11T17:11:59.017Z
Reserved: 2022-02-28T08:32:39.502Z
Link: CVE-2022-0775
Updated: 2024-08-02T23:40:03.745Z
Status : Modified
Published: 2024-01-16T16:15:09.367
Modified: 2025-06-11T17:15:30.343
Link: CVE-2022-0775
No data.
OpenCVE Enrichment
No data.
EUVD