VYPR

Simpleshop Cz

by WordPress

CVEs (1)

  • CVE-2024-1229MedMay 14, 2024
    risk 0.35cvss 5.3epss 0.01

    The SimpleShop plugin for WordPress is vulnerable to unauthorized disconnection from SimpleShop due to a missing capability check on the maybe_disconnect_simpleshop function in all versions up to, and including, 2.10.2. This makes it possible for unauthenticated attackers to disconnect the SimpleShop.