SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-84849

MEDIUM · CVSS 6.5 EPSS 0.17%

Source: NVD + CISA KEV + EPSS · Published 2026-09-03 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

An unauthenticated bypass vulnerability exists in the Pre-Orders feature of WooCommerce versions 2.3 and earlier, allowing attackers to access restricted functionalities without proper authentication. This could lead to unauthorized actions such as manipulating pre-order data or accessing sensitive information. E-commerce platforms utilizing affected WooCommerce versions should prioritize remediation to safeguard against potential exploitation.

CVE
CVE-2026-84849
Severity
MEDIUM
CVSS
6.5
EPSS
0.17%

Original NVD Description

Unauthenticated Bypass Vulnerability in Pre-Orders for WooCommerce <= 2.3 versions.