Vulnerabilities (CVE)

Filtered by vendor Neahplugins Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-13558 1 Neahplugins 1 Np Quote Request For Woocommerce 2025-03-27 N/A 7.5 HIGH
The NP Quote Request for WooCommerce plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 1.9.179 due to missing validation on a user controlled key. This makes it possible for unauthenticated attackers to read the content of quote requests.