PayPal Brasil para WooCommerce Vulnerable to Missing Authorization Attack
CVE-2023-25026
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 9 December 2024
What is CVE-2023-25026?
A missing authorization issue in PayPal Brasil para WooCommerce may allow unauthorized access due to incorrectly configured access control security levels. This vulnerability impacts versions of the plugin from n/a through 1.4.2, posing a risk to e-commerce platforms using this solution. When exploited, the vulnerability could enable attackers to manipulate or access sensitive information, highlighting the importance of maintaining proper security configurations to safeguard online transactions.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
PayPal Brasil para WooCommerce <= 1.4.2
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved