GHSA-xq73-6546-8hfmMediumCVSS 5.3
Missing Authorization vulnerability in VillaTheme AFFI – Affiliate Marketing for WooCommerce affi...
🔗 CVE IDs covered (1)
📋 Description
Missing Authorization vulnerability in VillaTheme AFFI – Affiliate Marketing for WooCommerce affi-affiliate-marketing-for-woo allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects AFFI – Affiliate Marketing for WooCommerce: from n/a through 1.0.9.
🔗 References (3)
- https://nvd.nist.gov/vuln/detail/CVE-2026-102390
- https://patchstack.com/database/wordpress/plugin/affi-affiliate-marketing-for-woo/vulnerability/wordpress-affi-affiliate-marketing-for-woocommerce-plugin-1-0-9-broken-access-control-vulnerability?_s_id=cve
- https://github.com/advisories/GHSA-xq73-6546-8hfm