PT-2025-36174 · WordPress · Bonus For Woo

·

CVE-2025-58835

·

Published

2025-09-05

·

Updated

2025-09-05

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Bonus for Woo versions n/a through 7.4.1
Description An improper validation of the specified quantity in input exists in Bonus for Woo, potentially allowing access to functionality not properly constrained by Access Control Lists (ACLs).
Recommendations Update Bonus for Woo to a version later than 7.4.1.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-58835

Affected Products

Bonus For Woo