CVE-2026-13607

CVE-2026-13607 published: The File Uploads Addon for WooCommerce WordPress plugin through 1.7.6 stores customer-uploaded files in a publicly web-accessible uploads directory and the access restriction it generates is ineffective, so an unauthenticated attacker who knows or guesses a...

View full NVD advisory → ← Back to CVE watch