Woocommerce Subscriptions

WordPress plugin · woocommerce-subscriptions · WordPress.org ↗
1
Critical
0
High
1
Known total
0
Unfixed
Running Woocommerce Subscriptions on your site? WP Alerts checks your installed version against every entry below and emails you only when one affects you. Free, no tracking.
Scan a site Monitor my sites →
SeverityVulnerabilityAffectedFixed inCVEPublished
CRITICAL
CVSS 9.8
WooCommerce Subscriptions < 9.1.0 - Unauthenticated RCE via PHP Object Injection
CVE.org
>=4.7.0, <9.1.0 v9.1.0 CVE-2026-18391 Aug 12, 2026

Data aggregated from WPVulnerability, NVD/NIST, ENISA EUVD, CVE.org and WordPress.org. Provided as-is; verify with the plugin author before acting. Disclaimer.