WordPress Advanced Dynamic Pricing for WooCommerce Plugin <= 4.1.5 is vulnerable to Broken Access Control
CVE-2022-40203
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 17 January 2024
What is CVE-2022-40203?
A missing authorization vulnerability exists in the AlgolPlus Advanced Dynamic Pricing plugin for WooCommerce, allowing unauthorized users to access sensitive areas of the application. This flaw can potentially lead to unauthorized modifications of dynamic pricing configurations, which may compromise the integrity and security of e-commerce operations. It is crucial for users of Advanced Dynamic Pricing for WooCommerce to ensure they are using a secure version and to implement proper access controls to mitigate risks associated with this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Advanced Dynamic Pricing for WooCommerce <= 4.1.5
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved