Wc Vendors

WordPress plugin · wc-vendors · WordPress.org ↗
0
Critical
0
High
3
Known total
0
Unfixed
Running Wc Vendors on your site? WP Alerts checks your installed version against every entry below and emails you only when one affects you. Free, no tracking.
Scan a site Monitor my sites →
SeverityVulnerabilityAffectedFixed inCVEPublished
MEDIUM
CVSS 4.3
WC Vendors < 2.7.2.1 - Order Shipment Status Change via CSRF
CVE.org
>=0, <2.7.2.1 v2.7.2.1 CVE-2026-81426 Sep 2, 2026
MEDIUM
CVSS 4.3
WC Vendors < 2.7.2.1 - Vendor+ Cross-Vendor Order Shipment Status Change
CVE.org
>=0, <2.7.2.1 v2.7.2.1 CVE-2026-81427 Sep 2, 2026
MEDIUM
CVSS 6.5
WC Vendors < 2.7.2.1 - Vendor+ Cross-Vendor Product and Arbitrary Post Modification via IDOR
CVE.org
>=0, <2.7.2.1 v2.7.2.1 CVE-2026-81428 Sep 2, 2026

Data aggregated from WPVulnerability, NVD/NIST, ENISA EUVD, CVE.org and WordPress.org. Provided as-is; verify with the plugin author before acting. Disclaimer.