PT-2025-14991 · Unknown · Anzar Ahmed Display Product Variations Dropdown On Shop Page
Nabil Irawan
·
Published
2025-04-04
·
Updated
2025-04-04
·
CVE-2025-32226
CVSS v3.1
4.3
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Anzar Ahmed Display product variations dropdown on shop page versions 1.1.3 and earlier
Description
The issue is related to a Missing Authorization vulnerability, which allows exploitation of incorrectly configured access control security levels. This affects the display of product variations dropdown on the shop page.
Recommendations
For versions 1.1.3 and earlier, update to a version that includes a fix for this issue, as no specific workaround is provided for these versions.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Missing Authorization
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Anzar Ahmed Display Product Variations Dropdown On Shop Page