First published: Tue Feb 25 2025(Updated: )
Missing Authorization vulnerability in enituretechnology Small Package Quotes – Unishippers Edition allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Small Package Quotes – Unishippers Edition: from n/a through 2.4.9.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
WordPress Small Package Quotes Plugin | >=n/a<=2.4.9 | |
WordPress Small Package Quotes – Unishippers Edition | <=2.4.9 |
Update the WordPress Small Package Quotes – Unishippers Edition wordpress plugin to the latest available version (at least 2.4.10).
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-26960 is categorized as a missing authorization vulnerability affecting specific versions of Eniture Technology Small Package Quotes – Unishippers Edition.
To fix CVE-2025-26960, update Eniture Technology Small Package Quotes – Unishippers Edition to version 2.4.10 or later.
Exploiting CVE-2025-26960 may allow unauthorized users to access restricted functionality or sensitive information.
CVE-2025-26960 affects versions of Eniture Technology Small Package Quotes – Unishippers Edition from n/a through 2.4.9.
Yes, a patch is available in version 2.4.10 and onwards of Eniture Technology Small Package Quotes – Unishippers Edition.