PT-2026-4258 · WordPress · Yith Woocommerce Request A Quote

Ppzzaarr

·

Published

2026-01-22

·

Updated

2026-01-22

·

CVE-2026-24366

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions YITH WooCommerce Request A Quote versions through 2.46.0
Description The YITH WooCommerce Request A Quote plugin contains a flaw related to incorrectly configured access control security levels, potentially allowing unauthorized access. The issue involves a missing authorization check.
Recommendations Update YITH WooCommerce Request A Quote to a version newer than 2.46.0.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2026-24366

Affected Products

Yith Woocommerce Request A Quote