SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-48888

HIGH · CVSS 7.5 EPSS 0.26%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A resource allocation vulnerability in Automattic WooCommerce prior to version 11.1.0 allows for HTTP Denial of Service (DoS) attacks, potentially leading to service disruptions. This high-severity flaw should be prioritized by all users and administrators of WooCommerce to prevent potential downtime and ensure service availability. Immediate updates or mitigations are recommended to safeguard against exploitation.

CVE
CVE-2026-48888
Severity
HIGH
CVSS
7.5
EPSS
0.26%

Original NVD Description

Allocation of Resources Without Limits or Throttling vulnerability in Automattic WooCommerce allows HTTP DoS. This issue affects WooCommerce: from n/a before 11.1.0.