PT-2026-43149 · Webtoffee · Woocommerce Smart Coupons

Published

2026-05-25

·

Updated

2026-05-25

·

CVE-2026-45438

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Missing Authorization vulnerability in WebToffee Smart Coupons for WooCommerce allows Exploiting Incorrectly Configured Access Control Security Levels.
This issue affects Smart Coupons for WooCommerce: from n/a before 2.3.0.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2026-45438

Affected Products

Woocommerce Smart Coupons