cleantalk
Vulnerabilities and Security Researches

Vulnerabilities and security researches forsubscription subscription

Direction: descending
May 27, 2026

Subscription for WooCommerce # CVE-2026-24554

CVE, Research URL

CVE-2026-24554

Date
May 26, 2026
Research Description
Cross-Site Request Forgery (CSRF) vulnerability in Convers Lab WPSubscription allows Cross Site Request Forgery. This issue affects WPSubscription: from n/a through 1.9.1.
Affected versions
max 1.9.2.
Status
vulnerable
Mar 30, 2026

Subscription for WooCommerce # CVE-2025-69347

CVE, Research URL

CVE-2025-69347

Date
Mar 25, 2026
Research Description
Authorization Bypass Through User-Controlled Key vulnerability in Convers Lab WPSubscription subscription allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WPSubscription: from n/a through <= 1.8.10.
Affected versions
max 1.8.10.
Status
vulnerable