Missing Authorization Vulnerability in WP Swings Ultimate Gift Cards Plugin
CVE-2026-24375
Currently unrated
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 19 February 2026
What is CVE-2026-24375?
A missing authorization vulnerability has been identified in the WP Swings Ultimate Gift Cards For WooCommerce plugin. This flaw allows unauthorized users to exploit incorrectly configured access control security levels, potentially leading to unauthorized actions within the application. Versions up to and including 3.2.4 are affected, making it critical for users to review their configurations and apply necessary patches to enhance security.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Ultimate Gift Cards For WooCommerce <= n/a
References
Timeline
Vulnerability published
Vulnerability Reserved
Credit
PPzzAArr | Patchstack Bug Bounty Program