SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-57698

MEDIUM · CVSS 6.5 EPSS 0.24%

Source: NVD + CISA KEV + EPSS · Published 2026-07-13 · Last synced 2026-08-12

CyberRota Analysis

AI-Generated

The vulnerability in VillaTheme Abandoned Cart Recovery for WooCommerce allows attackers to bypass authentication mechanisms, potentially leading to unauthorized access and manipulation of user data. This issue affects versions up to and including 1.1.12, and organizations using this plugin should prioritize remediation to protect against potential exploitation. E-commerce platforms relying on this plugin are particularly at risk and should take immediate action to update or mitigate the vulnerability.

CVE
CVE-2026-57698
Severity
MEDIUM
CVSS
6.5
EPSS
0.24%

Original NVD Description

Authentication Bypass Using an Alternate Path or Channel vulnerability in VillaTheme Abandoned Cart Recovery for WooCommerce woo-abandoned-cart-recovery allows Authentication Abuse.This issue affects Abandoned Cart Recovery for WooCommerce: from n/a through <= 1.1.12.