Vulnerabilities > Authorization Bypass Through User-Controlled Key

DATE CVE VULNERABILITY TITLE RISK
2023-12-21 CVE-2023-32747 Authorization Bypass Through User-Controlled Key vulnerability in Automattic Woocommerce Bookings 1.15.78
Authorization Bypass Through User-Controlled Key vulnerability in WooCommerce WooCommerce Bookings.This issue affects WooCommerce Bookings: from n/a through 1.15.78.
network
low complexity
automattic CWE-639
7.5
2023-12-21 CVE-2023-32799 Authorization Bypass Through User-Controlled Key vulnerability in Woocommerce Shipping multiple Addresses
Authorization Bypass Through User-Controlled Key vulnerability in WooCommerce Shipping Multiple Addresses.This issue affects Shipping Multiple Addresses: from n/a through 3.8.3.
network
low complexity
woocommerce CWE-639
6.5
2023-12-21 CVE-2023-47191 Authorization Bypass Through User-Controlled Key vulnerability in Kainelabs Youzify
Authorization Bypass Through User-Controlled Key vulnerability in KaineLabs Youzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress.This issue affects Youzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress: from n/a through 1.2.2.
network
low complexity
kainelabs CWE-639
6.5
2023-12-21 CVE-2023-49765 Authorization Bypass Through User-Controlled Key vulnerability in Blazzdev Rate MY Post
Authorization Bypass Through User-Controlled Key vulnerability in Blaz K.
network
low complexity
blazzdev CWE-639
6.5
2023-12-20 CVE-2023-35914 Authorization Bypass Through User-Controlled Key vulnerability in Automattic Woocommerce Subscriptions
Authorization Bypass Through User-Controlled Key vulnerability in WooCommerce Woo Subscriptions.This issue affects Woo Subscriptions: from n/a through 5.1.2.
network
low complexity
automattic CWE-639
7.5
2023-12-20 CVE-2023-35916 Authorization Bypass Through User-Controlled Key vulnerability in Automattic Woopayments
Authorization Bypass Through User-Controlled Key vulnerability in Automattic WooPayments – Fully Integrated Solution Built and Supported by Woo.This issue affects WooPayments – Fully Integrated Solution Built and Supported by Woo: from n/a through 5.9.0.
network
low complexity
automattic CWE-639
7.5
2023-12-20 CVE-2023-35876 Authorization Bypass Through User-Controlled Key vulnerability in Automattic Woocommerce Square
Authorization Bypass Through User-Controlled Key vulnerability in WooCommerce WooCommerce Square.This issue affects WooCommerce Square: from n/a through 3.8.1.
network
low complexity
automattic CWE-639
8.1
2023-12-20 CVE-2023-36520 Authorization Bypass Through User-Controlled Key vulnerability in Zackgrossbart Editorial Calendar
Authorization Bypass Through User-Controlled Key vulnerability in MarketingFire Editorial Calendar.This issue affects Editorial Calendar: from n/a through 3.7.12.
network
low complexity
zackgrossbart CWE-639
8.1
2023-12-20 CVE-2023-37871 Authorization Bypass Through User-Controlled Key vulnerability in Automattic Woocommerce Gocardless
Authorization Bypass Through User-Controlled Key vulnerability in WooCommerce GoCardless.This issue affects GoCardless: from n/a through 2.5.6.
network
low complexity
automattic CWE-639
7.5
2023-12-20 CVE-2023-38513 Authorization Bypass Through User-Controlled Key vulnerability in Meowapps Photo Engine
Authorization Bypass Through User-Controlled Key vulnerability in Jordy Meow Photo Engine (Media Organizer & Lightroom).This issue affects Photo Engine (Media Organizer & Lightroom): from n/a through 6.2.5.
network
low complexity
meowapps CWE-639
5.4