Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total2
Critical0
High0
Medium2
Reset
Showing 1-2 of 2 records
Threat Entry Updated 2026-04-08

CVE-2021-4379 - Woocommerce Multi Currency Plugin

The WooCommerce Multi Currency plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the wmc_bulk_fixed_price function in versions up to, and including, 2.1.17. This makes it possible for authenticated attackers, with subscriber-level permissions and above, to make changes to product prices.

PLUGIN Woocommerce Multi Currency

CVE-2021-4379

MEDIUM CVSS 6.5 2023-06-07
Threat Entry Updated 2026-04-08

CVE-2021-4376 - Woocommerce Multi Currency Plugin

The WooCommerce Multi Currency plugin for WordPress is vulnerable to Missing Authorization in versions up to, and including, 2.1.17. This makes it possible for authenticated attackers to change the price of a product to an arbitrary value.

PLUGIN Woocommerce Multi Currency

CVE-2021-4376

MEDIUM CVSS 4.3 2023-06-07
Scroll to top