CVE-2024-12264 | payuplugin PayU CommercePro Plugin up to 3.8.3 on WordPress REST API Endpoint generate-user-token improper authentication
A vulnerability classified as critical was found in payuplugin PayU CommercePro Plugin up to 3.8.3 on WordPress. This vulnerability affects unknown code of the file /wp-json/payu/v1/generate-user-token of the component REST API Endpoint. The manipulation leads to improper authentication.
This vulnerability was named CVE-2024-12264. The attack can be initiated remotely. There is no exploit available.