Medium 6.1
2025-01-07< 1.18.0
CVE-2024-12049
Minimum safe version
1.18.0
Update to 1.18.0 or later to address 6 fixable vulnerabilities
CVE-2024-12049
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress Woo Ukrposhta Plugin <= 1.6.18 is vulnerable to Cross Site Scripting (XSS)
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress Woo Ukrposhta plugin <= 1.6.17 - Sensitive Information Disclosure vulnerability
WordPress Woo Ukrposhta plugin <= 1.6.17 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability