CVE-2026-18143

CVE-2026-18143 published: The Request a Quote for WooCommerce plugin for WordPress is vulnerable to Arbitrary File Upload in all versions up to, and including, 2.9.2 via the `afrfq_submit_quote_via_popup()` function. This is due to missing file extension and MIME type validation in ...

View full NVD advisory → ← Back to CVE watch