CVE-2025-46244

Missing Authorization vulnerability in Dotstore Advanced Linked Variations for Woocommerce linked-variation allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Advanced Linked Variations for Woocommerce: from n/a through <= 1.0.3.
Configurations

Configuration 1 (hide)

cpe:2.3:a:multidots:advanced_linked_variations_for_woocommerce:*:*:*:*:*:wordpress:*:*

History

23 Apr 2026, 15:29

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 9.8
v2 : unknown
v3 : 5.3

01 Apr 2026, 17:23

Type Values Removed Values Added
Summary (en) Missing Authorization vulnerability in Dotstore Advanced Linked Variations for Woocommerce allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Advanced Linked Variations for Woocommerce: from n/a through 1.0.3. (en) Missing Authorization vulnerability in Dotstore Advanced Linked Variations for Woocommerce linked-variation allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Advanced Linked Variations for Woocommerce: from n/a through <= 1.0.3.
References
  • {'url': 'https://patchstack.com/database/wordpress/plugin/linked-variation/vulnerability/wordpress-advanced-linked-variations-for-woocommerce-1-0-3-broken-access-control-vulnerability?_s_id=cve', 'tags': ['Third Party Advisory'], 'source': 'audit@patchstack.com'}
  • () https://patchstack.com/database/Wordpress/Plugin/linked-variation/vulnerability/wordpress-advanced-linked-variations-for-woocommerce-1-0-3-broken-access-control-vulnerability?_s_id=cve - Third Party Advisory
CVSS v2 : unknown
v3 : 5.3
v2 : unknown
v3 : 9.8

29 Apr 2025, 18:37

Type Values Removed Values Added
CPE cpe:2.3:a:multidots:advanced_linked_variations_for_woocommerce:*:*:*:*:*:wordpress:*:*
References () https://patchstack.com/database/wordpress/plugin/linked-variation/vulnerability/wordpress-advanced-linked-variations-for-woocommerce-1-0-3-broken-access-control-vulnerability?_s_id=cve - () https://patchstack.com/database/wordpress/plugin/linked-variation/vulnerability/wordpress-advanced-linked-variations-for-woocommerce-1-0-3-broken-access-control-vulnerability?_s_id=cve - Third Party Advisory
First Time Multidots
Multidots advanced Linked Variations For Woocommerce

23 Apr 2025, 14:08

Type Values Removed Values Added
Summary
  • (es) La vulnerabilidad de falta de autorización en Dotstore Advanced Linked Variations for Woocommerce permite explotar niveles de seguridad de control de acceso configurados incorrectamente. Este problema afecta a las Variaciones Vinculadas Avanzadas para WooCommerce desde n/d hasta la versión 1.0.3.

22 Apr 2025, 10:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-22 10:15

Updated : 2026-04-23 15:29


NVD link : CVE-2025-46244

Mitre link : CVE-2025-46244

CVE.ORG link : CVE-2025-46244


JSON object : View

Products Affected

multidots

  • advanced_linked_variations_for_woocommerce
CWE
CWE-862

Missing Authorization