First published: Mon Feb 05 2024(Updated: )
The Active Products Tables for WooCommerce. Professional products tables for WooCommerce store plugin for WordPress is vulnerable to unauthorized access of functionality due to a missing capability check on several functions in all versions up to, and including, 1.0.6.1. This makes it possible for subscribers and higher to execute functions intended for admin use.
Credit: security@wordfence.com
Affected Software | Affected Version | How to fix |
---|---|---|
Pluginus Woot | <=1.0.6.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-0797 is rated as a high severity vulnerability due to unauthorized access risks.
To fix CVE-2024-0797, update the WooCommerce plugin to version 1.0.6.2 or later.
CVE-2024-0797 affects all versions of the Active Products Tables for WooCommerce plugin up to and including 1.0.6.2.
CVE-2024-0797 compromises functionality by allowing unauthorized access due to missing capability checks.
CVE-2024-0797 was disclosed in early 2024.