CVE-2026-1128 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

The WP eCommerce WordPress plugin through 3.15.1 does not have CSRF check in place when deleting coupons, which could allow attackers to make a logged in admin…
Medium CVSS: 4.3

CVE-2026-1128

The WP eCommerce WordPress plugin through 3.15.1 does not have CSRF check in place when deleting coupons, which could allow attackers to make a logged in admin remove them via a CSRF attack
Vendor
-
Product
-
CWE
CWE-352
Yayın Tarihi
2026-03-06 06:15:57
Güncelleme
2026-03-09 13:36:08
Source Identifier
contact@wpscan.com
KEV Date Added
-

Kategoriler

Referanslar