Security Advisory

CVE-2024-37277

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-11-01 14:18:26
Last updated 2026-04-28 16:09:58
Assigner Patchstack
CVSS score 7.5
State PUBLISHED

Description

Authorization Bypass Through User-Controlled Key vulnerability in Paid Memberships Pro allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Paid Memberships Pro: from n/a through 3.0.4.