First published: Thu Mar 27 2025(Updated: )
Missing Authorization vulnerability in magepeopleteam Taxi Booking Manager for WooCommerce allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Taxi Booking Manager for WooCommerce: from n/a through 1.2.1.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Taxi Booking Manager for WooCommerce | <=1.2.1 | |
Taxi Booking Manager for WooCommerce | <=1.2.1 |
Update the WordPress Taxi Booking Manager for WooCommerce plugin to the latest available version (at least 1.2.2).
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-30839 is classified as a critical vulnerability due to its potential for unauthorized access.
To fix CVE-2025-30839, update the Taxi Booking Manager for WooCommerce to the latest version beyond 1.2.1.
CVE-2025-30839 can allow unauthorized users to access sensitive functions due to improperly configured access controls.
Versions of Taxi Booking Manager for WooCommerce from n/a through 1.2.1 are impacted by CVE-2025-30839.
Yes, CVE-2025-30839 has known exploits due to the missing authorization in the access control configuration.