The Bulgarisation for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to missing capability checks on several functions in all versions up to, and including, 3.0.14. This makes it possible for unauthenticated and authenticated attackers, with subscriber-level access and above, to generate and delete labels.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Wordfence

Published:

Updated: 2024-08-05T15:11:42.536Z

Reserved: 2024-01-18T14:10:59.805Z

Link: CVE-2024-0683

cve-icon Vulnrichment

Updated: 2024-08-01T18:11:35.667Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-03-13T16:15:12.973

Modified: 2024-11-21T08:47:08.597

Link: CVE-2024-0683

cve-icon Redhat

No data.