Vulnerabilities > Cedcommerce > ONE Click Order RE Order > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-07-04 CVE-2024-5641 Cross-site Scripting vulnerability in Cedcommerce ONE Click Order Re-Order
The One Click Order Re-Order plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'ced_ocor_save_general_setting' function in all versions up to, and including, 1.1.9.
network
low complexity
cedcommerce CWE-79
5.4