Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-67909

Опубликовано: 24 дек. 2025
Источник: nvd
CVSS3: 8.1
EPSS Низкий

Описание

Authorization Bypass Through User-Controlled Key vulnerability in WP Swings Membership For WooCommerce membership-for-woocommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Membership For WooCommerce: from n/a through <= 3.0.3.

EPSS

Процентиль: 11%
0.00036
Низкий

8.1 High

CVSS3

Дефекты

CWE-639

Связанные уязвимости

CVSS3: 8.1
github
около 1 месяца назад

Authorization Bypass Through User-Controlled Key vulnerability in WP Swings Membership For WooCommerce membership-for-woocommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Membership For WooCommerce: from n/a through <= 3.0.3.

EPSS

Процентиль: 11%
0.00036
Низкий

8.1 High

CVSS3

Дефекты

CWE-639