VYPR
Unrated severityNVD Advisory· Published Sep 23, 2026

CVE-2026-86785

CVE-2026-86785

Description

The Social Commerce for WooCommerce WordPress plugin through 2.5.4 does not have authorisation checks on some of its REST API endpoints, allowing unauthenticated users to update Social Commerce for WooCommerce WordPress plugin through 2.5.4 configuration and product synchronisation state.

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.