GHSA-p226-wwrr-fmwwCriticalCVSS 9.8

The Spreadsheet Price Changer for WooCommerce and WP E-commerce – Light plugin for WordPress is...

Published
July 29, 2026
Last Modified
July 29, 2026

🔗 CVE IDs covered (1)

📋 Description

The Spreadsheet Price Changer for WooCommerce and WP E-commerce – Light plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 2.4.37 vi the user_filter function. This makes it possible for unauthenticated attackers to create admin accounts.

🔗 References (4)