VYPR

StoreGrowth Sales Booster

by WordPress

CVEs (1)

  • CVE-2026-13110Jul 28, 2026
    risk 0.00cvss epss 0.00

    The Storegrowth Sales Booster plugin for WordPress is vulnerable to Missing Authorization in versions up to and including 2.1.0. This is due to a missing capability check on the bogo_category_msg_create() AJAX handler, which is registered for both authenticated (wp_ajax_) and…