CVE-2024-44313

TastyIgniter 3.7.6 contains an Incorrect Access Control vulnerability in the invoice() function within Orders.php which allows unauthorized users to access and generate invoices due to missing permission checks.
Configurations

Configuration 1 (hide)

cpe:2.3:a:tastyigniter:tastyigniter:3.7.6:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-03-18 15:15

Updated : 2025-04-02 12:30


NVD link : CVE-2024-44313

Mitre link : CVE-2024-44313

CVE.ORG link : CVE-2024-44313


JSON object : View

Products Affected

tastyigniter

  • tastyigniter
CWE
CWE-284

Improper Access Control