Missing Authorization in UkrSolution Print Barcode Labels for WooCommerce
CVE-2025-24603

4.3MEDIUM

Key Information:

Vendor
Ukrsolution
Status
Print Barcode Labels For Your WooCommerce Products/orders
Vendor
CVE Published:
27 January 2025

Summary

The UkrSolution Print Barcode Labels for WooCommerce contains a significant missing authorization vulnerability that could allow unauthorized users to access sensitive functionalities of the plugin. This issue affects versions from n/a through 3.4.10, enabling potential exploitation in environments where proper access checks are not enforced. Malicious actors can potentially manipulate or retrieve sensitive data associated with WooCommerce orders and products. Addressing this vulnerability promptly is essential to maintain the integrity and security of e-commerce operations.

Affected Version(s)

Print Barcode Labels for your WooCommerce products/orders <= 3.4.10

References

CVSS V3.1

Score:
4.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Trương Hữu Phúc (truonghuuphuc) (Patchstack Alliance)
.