CVE-2026-48971 - WordPress Product Import Export for WooCommerce plugin <= 2.5.6 - Broken Access Control vulnerability
CVE ID :CVE-2026-48971
Published : May 27, 2026, 2:17 p.m. | 43 minutes ago
Description :Missing Authorization vulnerability in WebToffee Product Import Export for WooCommerce allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Product Import Export for WooCommerce: from n/a through 2.5.6.
Severity: 4.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : May 27, 2026, 2:17 p.m. | 43 minutes ago
Description :Missing Authorization vulnerability in WebToffee Product Import Export for WooCommerce allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Product Import Export for WooCommerce: from n/a through 2.5.6.
Severity: 4.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...