Unauthenticated Broken Access Control in Subscriptions for WooCommerce
CVE-2026-56061
7.5HIGH
What is CVE-2026-56061?
The Subscriptions for WooCommerce plugin versions up to 1.9.5 are exposed to an unauthenticated broken access control vulnerability, allowing unauthorized users to gain access and control over subscription data. This can lead to potential data breaches and unauthorized modifications, highlighting the need for immediate attention and updates to secure your online store.
Affected Version(s)
Subscriptions for WooCommerce <= 1.9.5