CVE 4.3 MEDIUM

WordPress Autoship Cloud for WooCommerce Subscription Products plugin <= 2.14.0 - Broken Access Control vulnerability_CVE-2026-24527

4.3 / 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

Description

Missing Authorization vulnerability in Patterns in the cloud Autoship Cloud for WooCommerce Subscription Products allows Exploiting Incorrectly Configured Access Control Security Levels.

This issue affects Autoship Cloud for WooCommerce Subscription Products: from n/a through 2.14.0.

Basic Information

ID CVE-2026-24527
Source Patchstack
Published May 25, 2026 at 21:40

Affected Product

Vendor Patterns in the cloud
Product Autoship Cloud for WooCommerce Subscription Products
Version n/a
Affected Versions Patterns in the cloud Autoship Cloud for WooCommerce Subscription Products n/a

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.