CVE-2024-39650

Missing Authorization vulnerability in WPWeb Elite WooCommerce PDF Vouchers allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects WooCommerce PDF Vouchers: from n/a through 4.9.4.
Configurations

Configuration 1 (hide)

cpe:2.3:a:wpwebelite:woocommerce_pdf_vouchers:*:*:*:*:*:wordpress:*:*

History

26 Jan 2026, 17:55

Type Values Removed Values Added
First Time Wpwebelite
Wpwebelite woocommerce Pdf Vouchers
CPE cpe:2.3:a:wpwebelite:woocommerce_pdf_vouchers:*:*:*:*:*:wordpress:*:*
Summary
  • (es) La vulnerabilidad de autorización faltante en WPWeb Elite WooCommerce PDF Vouchers permite acceder a funcionalidades que no están correctamente restringidas por las ACL. Este problema afecta a WooCommerce PDF Vouchers: desde n/a hasta 4.9.4.
References () https://patchstack.com/database/vulnerability/woocommerce-pdf-vouchers/wordpress-woocommerce-pdf-vouchers-plugin-4-9-3-unauthenticated-multiple-vulnerabilities?_s_id=cve - () https://patchstack.com/database/vulnerability/woocommerce-pdf-vouchers/wordpress-woocommerce-pdf-vouchers-plugin-4-9-3-unauthenticated-multiple-vulnerabilities?_s_id=cve - Third Party Advisory

01 Nov 2024, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-01 15:15

Updated : 2026-01-26 17:55


NVD link : CVE-2024-39650

Mitre link : CVE-2024-39650

CVE.ORG link : CVE-2024-39650


JSON object : View

Products Affected

wpwebelite

  • woocommerce_pdf_vouchers
CWE
CWE-862

Missing Authorization