Related VulnerabilitiesPoCCVE-2026-0692: BlueSnap Payment Gateway for WooCommerce <=3.4.0 - IPN Authorization BypassPoCCVE-2026-49060: Hippoo Mobile App for WooCommerce - Broken Access ControlPoCCVE-2026-0702: VidShop for WooCommerce <= 1.1.4 - SQL InjectionPoCCVE-2026-11387: SMS Alert – SMS & OTP for WooCommerce - Privilege EscalationPoCCVE-2026-71362: Adobe Commerce/Magento - Customer Session Identity SwitchPoCCVE-2026-27542: WooCommerce Wholesale Lead Capture <= 2.0.3.1 - Unauthenticated Privilege EscalationPoCCVE-2026-3891: Pix for WooCommerce <= 1.5.0 - Unauthenticated Arbitrary File UploadPoCCVE-2026-48282: Adobe ColdFusion - RDS Arbitrary File WriteStripe Payment Plugin for WooCommerce /wc-api/WT_Stripe/ SQL 注入漏洞(CVE-2024-0705)WordPress TI WooCommerce Wishlist /wp-json/wc/v3/wishlist/get_products SQL 注入漏洞(CVE-2024-43917)PoCCVE-2025-13339: Hippoo Mobile App for WooCommerce <= 1.7.1 - Unauthenticated Arbitrary File ReadPoCCVE-2025-13773: WordPress Print Invoice & Delivery Notes for WooCommerce <= 5.8.0 - Remote Code ExecutionPoCCVE-2026-10580: Hippoo Mobile App for WooCommerce <= 1.9.4 - Authentication Bypass to Admin Account Takeover