Unrated severityNVD Advisory· Published Jul 13, 2026· Updated Jul 13, 2026
WordPress Abandoned Cart Recovery for WooCommerce plugin <= 1.1.12 - Broken Authentication vulnerability
CVE-2026-57698
Description
Authentication Bypass Using an Alternate Path or Channel vulnerability in VillaTheme Abandoned Cart Recovery for WooCommerce woo-abandoned-cart-recovery allows Authentication Abuse.This issue affects Abandoned Cart Recovery for WooCommerce: from n/a through <= 1.1.12.
Affected products
1- Range: <=1.1.12
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.