Missing Authorization vulnerability in Facebook Facebook for WooCommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Facebook for WooCommerce: from n/a through 3.5.7.
Metrics
Affected Vendors & Products
References
History
Tue, 20 Jan 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 20 Jan 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:facebook:facebook_for_woocommerce:*:*:*:*:*:*:*:* | |
| References |
|
Wed, 29 Oct 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 29 Oct 2025 11:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Facebook
Facebook facebook For Woocommerce Woocommerce Woocommerce woocommerce Wordpress Wordpress wordpress |
|
| Vendors & Products |
Facebook
Facebook facebook For Woocommerce Woocommerce Woocommerce woocommerce Wordpress Wordpress wordpress |
Wed, 29 Oct 2025 04:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Missing Authorization vulnerability in Facebook Facebook for WooCommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Facebook for WooCommerce: from n/a through 3.5.7. | |
| Title | WordPress Facebook for WooCommerce plugin <= 3.5.7 - Broken Access Control to Notice Dismissal vulnerability | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published: 2025-10-29T04:08:45.858Z
Updated: 2026-01-20T14:28:22.271Z
Reserved: 2025-10-29T03:42:18.167Z
Link: CVE-2025-64296
Updated: 2025-10-29T13:43:35.887Z
Status : Awaiting Analysis
Published: 2025-10-29T04:16:05.760
Modified: 2026-01-20T15:18:54.400
Link: CVE-2025-64296
No data.