Feed/CVE-2026-15258
CVE-2026-15258HIGHCVSS 8.1

CVE-2026-15258

Published Jul 31, 2026·Updated Jul 31, 2026

NVD Description

The Product Feed Manager For WooCommerce WordPress plugin before 7.6.1 does not properly sanitise and escape product-feed custom filter rules before using them in a SQL query, allowing users with the Contributor role and above to perform SQL injection attacks.

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free