file deletion vulnerability

WooCommerce Google Feed Manager Vulnerability – Missing Authorization to Authenticated (Contributor+) Arbitrary File Deletion and Arbitrary Feed Actions – CVE-2024-7258 | WordPress Plugin Vulnerability Report

By Your WP Guy / Aug 22, 2024

Plugin Name: WooCommerce Google Feed Manager Key Information: Software Type: Plugin Software Slug: wp-product-feed-manager Software Status: Active Software Author: aukejomm Software Downloads: 797,636 Active Installs: 10,000 Last Updated: August 23, 2024 Patched Versions: 2.9.0 Affected Versions: <= 2.8.0 Vulnerability Details Vulnerability 1: Name: WooCommerce Google Feed Manager <= 2.8.0 Title: Missing Authorization to Authenticated (Contributor+)…

Read More