Access violation vulnerability in WooCommerce Multiple Free Gift 1.2.3

The WooCommerce Multiple Free Gift plugin for WordPress has a security issue where anyone can manipulate the gifts available. This affects all versions, including 1.2.3. The problem is that the plugin does not have proper safeguards in place to prevent unauthorized items from being added as gifts. As a result, attackers without proper authorization can add non-gift items to their shopping cart as if they were gifts.

Detected in:

WooCommerce Multiple Free Gift open vulnerable versions: >= * <= 1.2.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.