PT-2025-36174 · WordPress · Bonus For Woo

Martino Spagnuolo

·

Published

2025-09-05

·

Updated

2025-09-05

·

CVE-2025-58835

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Bonus for Woo versions n/a through 7.4.1
Description An improper validation of the specified quantity in input exists in Bonus for Woo, potentially allowing access to functionality not properly constrained by Access Control Lists (ACLs).
Recommendations Update Bonus for Woo to a version later than 7.4.1.

Fix

Weakness Enumeration

Related Identifiers

CVE-2025-58835

Affected Products

Bonus For Woo