Vulnerabilities > Vanquish > High

DATE CVE VULNERABILITY TITLE RISK
2025-02-01 CVE-2024-13343 Missing Authorization vulnerability in Vanquish Woocommerce Customers Manager
The WooCommerce Customers Manager plugin for WordPress is vulnerable to Privilege Escalation due to a missing capability check on the ajax_assign_new_roles() function in all versions up to, and including, 31.3.
network
low complexity
vanquish CWE-862
8.8