WooCommerce Bookings 插件(WordPress 版)在 3.9.0 版本之前,其某个 AJAX 操作未执行权限检查,且其 nonce(一次性令牌)验证可通过省略令牌的方式进行绕过。这使得具有“订阅者”(Subscriber)及更高权限级别的用户能够创建草稿状态的、可预订的商品。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Unknown | WooCommerce Bookings | < 3.9.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Unknown | WooCommerce Bookings | 0 ~ 3.9.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-77115 | Brave Popup Builder < 0.8.6 - Unauthenticated Reflected XSS via UTM Parameters | |
| CVE-2026-77116 | Brave Popup Builder < 0.8.6 - Subscriber+ Unpublished Popup Disclosure via Preview | |
| CVE-2026-77003 | Content Mask 1.8.0 - 1.8.5.4 - Contributor Publish Capability Bypass via create_new_conten | |
| CVE-2026-13598 | RestrictMate < 1.3.0 - Unauthenticated Privilege Escalation to Administrator |
No comments yet