๐Ÿ” CVE Alert

CVE-2026-90985

UNKNOWN 0.0

WPC Smart Compare for WooCommerce < 6.6.1 - Unauthenticated Password-Protected Product Description Disclosure via woosc_load

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

The WPC Smart Compare for WooCommerce WordPress plugin before 6.6.1 does not apply WordPress's post-password protection when returning product content through its comparison handler, allowing unauthenticated users to read the description of password-protected products.

Vendor unknown
Product wpc smart compare for woocommerce
Published Sep 23, 2026
Stay Ahead of the Next One

Get instant alerts for unknown wpc smart compare for woocommerce

Be the first to know when new unknown vulnerabilities affecting unknown wpc smart compare for woocommerce are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Unknown / WPC Smart Compare for WooCommerce
0 < 6.6.1

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
wpscan.com: https://wpscan.com/vulnerability/ff8a599b-e74f-485e-baf8-8d162633b2ea/

Credits

Artus KG WPScan