Subscriber Privilege Escalation in Abandoned Cart Pro for WooCommerce Plugin
CVE-2026-56010
8.8HIGH
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 26 June 2026
What is CVE-2026-56010?
A privilege escalation vulnerability exists in the Abandoned Cart Pro for WooCommerce plugin for versions up to 10.4.0, allowing subscribers to escalate their permissions and gain access to admin-level features, potentially compromising site security and user data.
Affected Version(s)
Abandoned Cart Pro for WooCommerce <= 10.4.0