CVE-2026-90985 - WPC Smart Compare for WooCommerce < 6.6.1 - Unauthenticated Password-Protected Product Description Disclosure via woosc_load
CVE ID :CVE-2026-90985
Published : Sept. 23, 2026, 6:17 a.m. | 53 minutes ago
Description :The WPC Smart Compare for WooCommerce WordPress plugin before 6.6.1 does not apply WordPress's post-password protection when returning product content through its comparison handler, allowing unauthenticated users to read the description of password-protected products.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Sept. 23, 2026, 6:17 a.m. | 53 minutes ago
Description :The WPC Smart Compare for WooCommerce WordPress plugin before 6.6.1 does not apply WordPress's post-password protection when returning product content through its comparison handler, allowing unauthenticated users to read the description of password-protected products.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...