Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-85038— B2BKing < 5.2.40 - Unauthenticated B2B Group Assignment and Approval Bypass via Registration Role Selection

Quick assessment

Affected
Unknown B2BKing — Ultimate WooCommerce B2B and Wholesale Plugin — Wholesale Prices, Bulk Order Form & More
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

B2BKing — 终极 WooCommerce B2B 与批发插件(批发价格、批量订单表单等)在 5.2.40 版本之前的版本存在安全漏洞:该插件未验证用户在注册时选择的角色是否确实存在于注册表单中,从而允许未认证的用户在自助注册过程中将自己分配到受限的 B2B 客户组,并跳过手动账户审批流程。

AI Predicted 7.1 Difficulty: Easy

Possible ATT&CK Techniques 1 AI

T1040 · Network Sniffing
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-85038

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
B2BKing < 5.2.40 - Unauthenticated B2B Group Assignment and Approval Bypass via Registration Role Selection
Source: CVE Program / CVE List V5
Vulnerability Description
The B2BKing — Ultimate WooCommerce B2B and Wholesale Plugin — Wholesale Prices, Bulk Order Form & More WordPress plugin before 5.2.40 does not verify that a role selected during registration is one actually offered on the registration form, allowing unauthenticated users to assign themselves to restricted B2B customer groups and to skip the manual account-approval workflow during self-registration.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5

Affected Products

II. Public POCs for CVE-2026-85038

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-85038

登录查看更多情报信息。

Other References for CVE-2026-85038 (1)

Same Patch Batch · Unknown · 2026-09-06 · 6 CVEs total

CVE-2026-84219 Kirki 6.2.1 - 6.2.5 - Unauthenticated Stored XSS via HTML Entity Decoding
CVE-2026-75793 SureCart < 4.7.0 - Unauthenticated Account Creation with Automatic Login
CVE-2026-18480 SureCart < 4.6.3 - Subscriber+ Administrator Account Takeover
CVE-2026-84028 Bold Page Builder < 5.9.9 - Contributor+ Stored XSS via Slider Elements' additional_settin
CVE-2026-13159 Real Estate Papi <= 1.0.5 - Subscriber+ Plugin Installation

IV. Related Vulnerabilities

V. Comments for CVE-2026-85038

No comments yet


Leave a comment