Unrated severityNVD Advisory· Published Sep 23, 2026
CVE-2026-90985
CVE-2026-90985
Description
The WPC Smart Compare for WooCommerce WordPress plugin before 6.6.1 does not apply WordPress's post-password protection when returning product content through its comparison handler, allowing unauthenticated users to read the description of password-protected products.
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.