CVE-2023-50850
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Published Dec 31, 2024
CWE ID 862
Summary
CVE-2023-50850 is a newly disclosed vulnerability affecting WooCommerce Subscriptions. It is classified as a Missing Authorization issue, which means that access control security levels can be incorrectly configured, allowing unauthorized access. Specifically, attackers can exploit this vulnerability to gain unauthorized access to subscription functionality. This issue affects all versions of WooCommerce Subscriptions prior to 5.8.0. It is critical that users upgrade to the latest version as soon as possible to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.