CVE-2022-46807
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Published Dec 13, 2024
CWE ID 862
Summary
CVE-2022-46807 is a Missing Authorization vulnerability affecting the Lauri Karisola / WP Trio Stock Sync plugin for WooCommerce. The issue arises from incorrectly configured access control security levels, allowing unauthorized access and potential exploitation. This vulnerability affects Stock Sync for WooCommerce versions from n/a through 2.3.2. Successful exploitation could lead to significant security risks, emphasizing the importance of timely patching.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share