CVE-2024-38726: Pickplugins Product Designer

High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.

Missing Authorization vulnerability in PickPlugins Product Designer allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Product Designer: from n/a through 1.0.33.

Affected products

  • Pickplugins Product Designer: up to and including 1.0.33

Published 2024-11-01. Last modified 2026-06-17.