Description
Authorization Bypass Through User-Controlled Key vulnerability in YoOhw Studio Order Cancellation & Returns for WooCommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Order Cancellation & Returns for WooCommerce: from n/a through 1.1.10.
Problem types
CWE-639 Authorization Bypass Through User-Controlled Key
Product status
Any version
Credits
powpy | Patchstack Bug Bounty Program
References
vdp.patchstack.com/...eferences-idor-vulnerability?_s_id=cve
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.