Vulnerabilities > Wpexperts > License Manager FOR Woocommerce

DATE CVE VULNERABILITY TITLE RISK
2024-06-21 CVE-2024-1639 Incorrect Authorization vulnerability in Wpexperts License Manager for Woocommerce
The License Manager for WooCommerce plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the showLicenseKey() and showAllLicenseKeys() functions in all versions up to, and including, 3.0.7.
network
low complexity
wpexperts CWE-863
6.5
2023-11-30 CVE-2023-48742 SQL Injection vulnerability in Wpexperts License Manager for Woocommerce
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in LicenseManager License Manager for WooCommerce license-manager-for-woocommerce allows SQL Injection.This issue affects License Manager for WooCommerce: from n/a through 2.2.10.
network
low complexity
wpexperts CWE-89
7.2