MWB HubSpot for WooCommerce
by WordPress
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-10591 | Hig | 0.50 | 8.8 | 0.00 | Jan 30, 2025 | The MWB HubSpot for WooCommerce – CRM, Abandoned Cart, Email Marketing, Marketing Automation & Analytics plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the hubwoo_save_updates()… | ||
| CVE-2026-73396 | Hig | 0.46 | 7.1 | — | Aug 18, 2026 | Subscriber Broken Authentication in MWB HubSpot for WooCommerce <= 1.6.7 versions. |
- risk 0.50cvss 8.8epss 0.00
The MWB HubSpot for WooCommerce – CRM, Abandoned Cart, Email Marketing, Marketing Automation & Analytics plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the hubwoo_save_updates()…
- risk 0.46cvss 7.1epss —
Subscriber Broken Authentication in MWB HubSpot for WooCommerce <= 1.6.7 versions.