PT-2024-36269 · Unknown · Woocommerce Pdf Vouchers

Bonds

·

Published

2024-12-18

·

Updated

2026-01-28

·

CVE-2024-54383

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions WooCommerce PDF Vouchers versions prior to 4.9.9
Description An incorrect privilege assignment exists in wpweb WooCommerce PDF Vouchers, allowing for privilege escalation. The issue allows an attacker to gain elevated privileges within the system.
Recommendations Update WooCommerce PDF Vouchers to version 4.9.9 or later.

Fix

LPE

Incorrect Privilege Assignment

Weakness Enumeration

Related Identifiers

CVE-2024-54383

Affected Products

Woocommerce Pdf Vouchers