SQL Injection Vulnerability in Suggestion Engine for WooCommerce by WooCommerce
CVE-2026-81277
8.5HIGH
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 27 August 2026
What is CVE-2026-81277?
The Suggestion Engine for WooCommerce plugin versions up to 2.0.11 contains a SQL Injection vulnerability that may allow attackers to manipulate database queries, potentially leading to unauthorized data access or modification. This flaw underscores the importance of regular updates and security patches to safeguard eCommerce platforms against underlying threats.
Affected Version(s)
Suggestion Engine for WooCommerce <= 2.0.11