Description

Missing Authorization vulnerability in WP Swings Points and Rewards for WooCommerce points-and-rewards-for-woocommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Points and Rewards for WooCommerce: from n/a through <= 2.9.5.

INFO

Published Date :

2026-01-23T14:28:59.230Z

Last Modified :

2026-04-28T16:14:49.797Z

Source :

Patchstack
AFFECTED PRODUCTS

The following products are affected by CVE-2026-24581 vulnerability.

Vendors Products
Wordpress
  • Wordpress
Wpswings
  • Points And Rewards For Woocommerce

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact