Cecabank WooCommerce Plugin <= 0.3.4 - Missing Authorization
mediumThe Cecabank WooCommerce Plugin plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to, and including, 0.3.4. This makes it possible for unauthenticated attackers to perform an unauthorized action.
- CVSS:
- 6.5
- Affected:
- up to 0.3.4
- Fixed in:
- 0.3.5
- Disclosed:
- Sep 22, 2025