CVE-2024-37277

Publication date

2024-11-01 14:18:26

Family

Patchstack

State

PUBLISHED

Description

Authorization Bypass Through User-Controlled Key vulnerability in Paid Memberships Pro allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Paid Memberships Pro: from n/a through 3.0.4.