Vulnerabilities > Revolut > Revolut Gateway FOR Woocommerce > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-09-25 CVE-2024-8678 Missing Authorization vulnerability in Revolut Gateway for Woocommerce
The Revolut Gateway for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the /wc/v3/revolut REST API endpoint in all versions up to, and including, 4.17.3.
network
low complexity
revolut CWE-862
5.3