plugin

Soisy Pagamento Rateale Vulnerabilities

1 known security issue reported for the Soisy Pagamento Rateale WordPress plugin. Most recent disclosed Oct 20, 2023.

1 high

Running Soisy Pagamento Rateale on your site? Check whether your installed version is affected.

Scan your site free

Soisy Pagamento Rateale <= 6.0.1 - Missing Authorization to Sensitive Information Exposure

high

The Soisy Pagamento Rateale plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the parseRemoteRequest function in versions up to, and including, 6.0.1. This makes it possible for unauthenticated attackers with knowledge of an existing WooCommerce Order ID to expose se...

CVSS:
7.5
Affected:
up to 6.0.1
Fixed in:
6.0.2
Disclosed:
Oct 20, 2023

CVE-2023-5132 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database