Sensitive Data Exposure in RadiusTheme ShopBuilder for Elementor WooCommerce Builder Addons
CVE-2026-32372

5.3MEDIUM

What is CVE-2026-32372?

The RadiusTheme ShopBuilder for Elementor WooCommerce Builder Addons contains a vulnerability that permits unauthorized access to sensitive embedded data. This flaw allows attackers to retrieve information that should remain confidential, potentially leading to misuse or exploitation of the affected systems. Users of versions up to and including 3.2.4 should be aware of this issue and take appropriate measures to secure their applications.

Affected Version(s)

ShopBuilder – Elementor WooCommerce Builder Addons 0 <= 3.2.4

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Bao - BlueRock | Patchstack Bug Bounty Program
.