CVE-2024-56008

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Dec 18, 2024
CWE ID 862

Summary

CVE-2024-56008 is a Missing Authorization vulnerability affecting Spreadr Woocommerce, a plugin used in WooCommerce stores. The flaw enables unauthorized access to functionality that is not adequately constrained by Access Control Lists (ACLs). This issue affects Spreadr Woocommerce versions from n/a through 1.0.4, potentially putting these stores at risk for unintended modifications or unauthorized actions. Users are recommended to update to the latest version or implement appropriate security measures to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share