Vulnerabilities > Makewebbetter > Hubspot FOR Woocommerce

DATE CVE VULNERABILITY TITLE RISK
2025-01-30 CVE-2024-10591 Missing Authorization vulnerability in Makewebbetter Hubspot for Woocommerce
The MWB HubSpot for WooCommerce – CRM, Abandoned Cart, Email Marketing, Marketing Automation & Analytics plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the hubwoo_save_updates() function in all versions up to, and including, 1.5.9.
network
low complexity
makewebbetter CWE-862
8.8