SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-32477

HIGH · CVSS 8.6 EPSS 0.34%

Source: NVD + CISA KEV + EPSS · Published 2026-08-24 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

ShopBuilder Pro – Elementor WooCommerce Builder Addons versions up to 2.2.0 are vulnerable to unauthenticated arbitrary file deletion, allowing attackers to delete files on the server without authentication. This could lead to significant data loss or service disruption for affected sites. E-commerce platforms utilizing this plugin should prioritize patching or mitigating this vulnerability to protect their assets and maintain operational integrity.

CVE
CVE-2026-32477
Severity
HIGH
CVSS
8.6
EPSS
0.34%

Original NVD Description

Unauthenticated Arbitrary File Deletion in ShopBuilder Pro – Elementor WooCommerce Builder Addons <= 2.2.0 versions.