Authorization Flaw in PriceListo's Best Restaurant Menu Plugin
CVE-2024-49698
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 31 December 2024
What is CVE-2024-49698?
A significant authorization vulnerability exists in the Best Restaurant Menu plugin developed by PriceListo. This flaw allows unauthorized access to restricted functionalities, potentially exposing sensitive information and enabling malicious actions. The vulnerability affects all versions up to and including 1.4.2, creating an urgent need for users to assess their security posture and implement appropriate measures to mitigate risks. An update or patch is recommended to ensure the integrity and safety of web applications utilizing this plugin.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Best Restaurant Menu by PriceListo <= 1.4.2
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved