CVE-2024-38745: Rymera Wholesale Suite

Medium severity, CVSS 5.3. EPSS: 0.5% chance of exploitation in the next 30 days.

Missing Authorization vulnerability in Rymera Web Co Wholesale Suite allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Wholesale Suite: from n/a through 2.1.12.

Affected products

  • Rymera Wholesale Suite: up to and including 2.1.12
  • Rymera Web Co Wholesale Suite: up to and including 2.1.12

Published 2024-11-01. Last modified 2026-06-17.