WordPress ProfileGrid WooCommerce Integration Missing Authorization Vulnerability

Vulnerability

A vulnerability exists in the WordPress ProfileGrid WooCommerce Integration plugin, specifically in versions through 3.4. The issue stems from a lack of proper capability checks and nonce validation in the 'pg_install_profilegrid' AJAX handler. This flaw allows authenticated users with Subscriber-level access and above to install and activate the ProfileGrid plugin without authorization.

Impact

Exploitation of this vulnerability allows for unauthorized installation and activation of the ProfileGrid plugin, which could lead to further unauthorized actions depending on the capabilities granted by the activated plugin.

Reproduction

To reproduce this vulnerability, an authenticated user with Subscriber-level access or higher can send a request to the 'pg_install_profilegrid' AJAX action. This request can be made without the necessary nonce for verification, bypassing the intended security measures. Once the request is processed, the ProfileGrid plugin will be installed and activated on the WordPress site.

Remediation

Users are advised to update the ProfileGrid WooCommerce Integration plugin to version 3.4.1 or later.

Added: Jul 9, 2026, 8:58 AM
Updated: Jul 9, 2026, 8:58 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
6.3
remediation
0.0
relevance
9.2
threat
4.8
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.