Missing Authorization Vulnerability in Arshid WooCommerce Quick View Plugin
CVE-2025-24705
5.3MEDIUM
What is CVE-2025-24705?
A vulnerability exists in the Arshid WooCommerce Quick View plugin that allows for improperly configured access control security levels. This issue enables unauthorized users to gain access to sensitive functionalities within the plugin. It affects all versions from n/a through 1.1.1, potentially exposing private data. Proper security measures should be applied to mitigate the risk associated with this vulnerability.
Affected Version(s)
WooCommerce Quick View <= 1.1.1