Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

WooCommerce Google Sheet Sync: Unsecured Access to Data

CVE-2025-68834
Summary

A security flaw in WooCommerce's Google Sheet sync feature allows unauthorized access to sensitive data if access controls are not properly set up. This affects versions 1.0 through 1.1.3 of the plugin, so upgrade to a fixed version to prevent unauthorized access.

Original title
Missing Authorization vulnerability in Saiful Islam Sync Master Sheet – Product Sync with Google Sheet for WooCommerce product-sync-master-sheet allows Exploiting Incorrectly Configured Acces...
Original description
Missing Authorization vulnerability in Saiful Islam Sync Master Sheet &#8211; Product Sync with Google Sheet for WooCommerce product-sync-master-sheet allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Sync Master Sheet &#8211; Product Sync with Google Sheet for WooCommerce: from n/a through <= 1.1.3.
Vulnerability type
CWE-862 Missing Authorization
Published: 20 Feb 2026 · Updated: 11 Mar 2026 · First seen: 6 Mar 2026