Vulnerability CVE-2022-28666


Published: 2022-07-21

Description:
Broken Access Control vulnerability in YIKES Inc. Custom Product Tabs for WooCommerce plugin <= 1.7.7 at WordPress leading to &yikes-the-content-toggle option update.

Type:

CWE-264

(Permissions, Privileges, and Access Controls)

 References:
https://wordpress.org/plugins/yikes-inc-easy-custom-woocommerce-product-tabs/
https://patchstack.com/database/vulnerability/yikes-inc-easy-custom-woocommerce-product-tabs/wordpress-custom-product-tabs-for-woocommerce-plugin-1-7-7-broken-access-control-vulnerability-leading-to-yikes-the-content-toggle-option-update

Copyright 2026, cxsecurity.com

 

Back to Top