First published: Fri Nov 01 2024(Updated: )
Missing Authorization vulnerability in WPClever WPC Frequently Bought Together for WooCommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WPC Frequently Bought Together for WooCommerce: from n/a through 7.1.9.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
WPClever WPC Frequently Bought Together for WooCommerce | <7.2.0 |
Update to 7.2.0 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-43312 has a medium severity rating due to its potential for unauthorized access.
To fix CVE-2024-43312, update WPC Frequently Bought Together for WooCommerce to version 7.2.0 or higher.
CVE-2024-43312 affects WPC Frequently Bought Together for WooCommerce versions up to and including 7.1.9.
CVE-2024-43312 is a missing authorization vulnerability related to incorrectly configured access control security levels.
Users of WPC Frequently Bought Together for WooCommerce versions from n/a to 7.1.9 are potentially impacted by CVE-2024-43312.