All 2 CVE vulnerabilities found in WC Vendors – WooCommerce Multivendor, WooCommerce Marketplace, Product Vendors, with AI-generated Chinese analysis, references, and POCs.
Vendor: wcvendors
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-15351 | WC Vendors <= 2.7.0 - Authenticated (Shop Manager+) SQL Injection via 'status' Parameter CWE-89 | 4.9 | Medium | 2026-08-16 |
| CVE-2025-12130 | WC Vendors – WooCommerce Multivendor, WooCommerce Marketplace, Product Vendors <= 2.6.4 - Cross-Site Request Forgery to Vendor Product Deletion CWE-352 | 4.3 | Medium | 2025-12-05 |
All 2 known CVE vulnerabilities affecting WC Vendors – WooCommerce Multivendor, WooCommerce Marketplace, Product Vendors with full Chinese analysis, references, and POCs where available.