Medium 6.3
2024-10-16< 2.1.3
Freemius SDK <= 2.4.2 - Missing Authorization Checks
Minimum safe version
2.2.0
Update to 2.2.0 or later to address 7 fixable vulnerabilities
Freemius SDK <= 2.4.2 - Missing Authorization Checks
CVE-2023-40212
WordPress WooCommerce Product Attachment Plugin <= 2.1.7 is vulnerable to Cross Site Scripting (XSS)
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress WooCommerce Product Attachment plugin <= 1.1.2 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability
WordPress WooCommerce Product Attachment plugin <= 2.1.2 - Sensitive Information Disclosure vulnerability
WordPress WooCommerce Product Attachment plugin <= 2.1.2 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability