activecampaign_for_woocommerce_clear_error_log
AJAX action, which makes it possible for authenticated attackers with a role as low as subscriber to delete error logs. ActiveCampaign for WooCommerce by ActiveCampaign <= 1.9.7 - Missing Authorization to Authenticated (Subscriber+) Error Log Deletion
REPORT ID: 3b553149-e1f9-4733-96f7-056801c9b09e
The plugin contains a Missing Authorization vulnerability due to a missing capability check in the
You need to log in to view the vulnerability details.