Missing Authorization Flaw in Booster for WooCommerce by WordPress
CVE-2026-32586
5.3MEDIUM
What is CVE-2026-32586?
A security flaw in Booster for WooCommerce leads to unauthorized access due to inadequate access control configurations. This vulnerability impacts users who have not updated to version 7.11.3 or later, potentially allowing malicious actors to exploit the system and gain control without proper authentication. It is essential for users to ensure their installations are secure by applying the latest updates to mitigate this risk.
Affected Version(s)
Booster for WooCommerce 0 <= 7.11.3