Access violation vulnerability in WooCommerce Smart Coupons 4.6.5

The WooCommerce Smart Coupons plugin is a tool for WordPress websites that helps store owners offer discounts and gift certificates to their customers. Unfortunately, versions up to and including 4.6.0 of this plugin have a vulnerability that allows unauthenticated attackers to send themselves gift certificates of any value. This means that attackers can use the gift certificates to buy products on the victim’s store without needing any authorization. To protect against this vulnerability, store owners should update to the latest version of WooCommerce Smart Coupons.

Detected in:

WooCommerce Smart Coupons fixed vulnerable versions: >= * < 4.6.5

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.