CVE-2026-86851

CVE-2026-86851 published: The Livees Checkout WordPress plugin through 7.0.2 does not perform any capability, nonce or order-key check before acting on request parameters on the order confirmation page, allowing unauthenticated users to change the status of arbitrary orders, store a...

View full NVD advisory → ← Back to CVE watch