CVE-2026-87770
Price Drop Alert for WooCommerce <= 1.1 - Unauthenticated SQL Injection via product
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
The Price Drop Alert for Woo Commerce WordPress plugin through 1.1 does not sanitize and escape parameters before using them in a SQL query on an AJAX action available to unauthenticated users, allowing unauthenticated attackers to perform SQL injection attacks and extract sensitive data from the database.
| Vendor | unknown |
| Product | price drop alert for woo commerce |
| Published | Sep 18, 2026 |
Stay Ahead of the Next One
Get instant alerts for unknown price drop alert for woo commerce
Be the first to know when new unknown vulnerabilities affecting unknown price drop alert for woo commerce are published — delivered to Slack, Telegram or Discord.
Get Free Alerts →
Free · No credit card · 60 sec setup
Affected Versions
Unknown / Price Drop Alert for Woo Commerce
0 ≤ 1.1
References
Credits
Theo Antônio Da Fonseca WPScan