Vulnerabilities and security researches forsubscription subscription
Direction: descendingMay 27, 2026
Subscription for WooCommerce # CVE-2026-24554
- CVE, Research URL
- Home page URL
- Application
- Date
- May 26, 2026
- Research Description
- Cross-Site Request Forgery (CSRF) vulnerability in Convers Lab WPSubscription allows Cross Site Request Forgery. This issue affects WPSubscription: from n/a through 1.9.1.
- Affected versions
-
max 1.9.2.
- Status
-
vulnerable
Mar 30, 2026
Subscription for WooCommerce # CVE-2025-69347
- CVE, Research URL
- Home page URL
- Application
- Date
- Mar 25, 2026
- Research Description
- Authorization Bypass Through User-Controlled Key vulnerability in Convers Lab WPSubscription subscription allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WPSubscription: from n/a through <= 1.8.10.
- Affected versions
-
max 1.8.10.
- Status
-
vulnerable