Authorization Bypass in YITH WooCommerce Wishlist by YITH
CVE-2026-27329
5.3MEDIUM
What is CVE-2026-27329?
An authorization bypass vulnerability in YITH WooCommerce Wishlist allows attackers to exploit incorrectly configured access control security levels. This flaw permits unauthorized access to features and data, potentially compromising user privacy and eCommerce integrity. Affected versions include all prior to 4.12.0, highlighting the importance for users to update immediately to secure their online stores.
Affected Version(s)
YITH WooCommerce Wishlist <= 4.12.0